Go to file
Jake Spurlock 375d3d8775 Backporting several bug fixes.
- Query: Remove the static query property.
- HTTP API: Protect against hex interpretation.
- Filesystem API: Prevent directory travelersals when creating new folders.
- Administration: Ensure that admin referer nonce is valid.
- REST API: Send a Vary: Origin header on GET requests.

Backports [46474], [46475], [46476], [46477], [46478], [46483], [46485] to the 4.7 branch.


git-svn-id: https://develop.svn.wordpress.org/branches/4.7@46495 602fd350-edb4-49c9-b593-d223f7449a82
2019-10-14 18:49:56 +00:00
src Backporting several bug fixes. 2019-10-14 18:49:56 +00:00
tests Backporting several bug fixes. 2019-10-14 18:49:56 +00:00
tools/i18n DOCS: Replace HTTP links with HTTPS. 2016-06-10 04:49:09 +00:00
.editorconfig
.gitignore Revert [38401] after [38480]. 2016-09-06 18:12:09 +00:00
.jshintrc
.nvmrc Add .nvmrc files to older versions of WordPress 2019-09-25 20:54:05 +00:00
.travis.yml Build/Test tools: Further trimming of CI jobs on the 4.7 branch. 2019-03-25 16:26:30 +00:00
Gruntfile.js REST API: Add QUnit tests for wp-api.js and PHPUnit fixture generation. 2017-02-24 22:33:05 +00:00
npm-shrinkwrap.json Build: Remove fsevents from npm-shrinkwrap.json 2016-11-29 04:02:23 +00:00
package.json WordPress 4.7.14. 2019-09-04 21:22:13 +00:00
phpunit.xml.dist oEmbed: Remove the oEmbed provider unit tests. 2016-10-20 09:15:10 +00:00
wp-cli.yml
wp-config-sample.php
wp-tests-config-sample.php Database: Restore numbered placeholders in `wpdb::prepare()`. 2017-10-31 12:33:25 +00:00