verify nonce for search!
This commit is contained in:
parent
32d8e7c3f0
commit
90deea3f7b
1 changed files with 6 additions and 3 deletions
|
@ -75,10 +75,13 @@ class Followers extends WP_List_Table {
|
||||||
}
|
}
|
||||||
|
|
||||||
// phpcs:ignore WordPress.Security.NonceVerification.Recommended
|
// phpcs:ignore WordPress.Security.NonceVerification.Recommended
|
||||||
if ( isset( $_GET['s'] ) ) {
|
if ( isset( $_GET['s'] ) && isset( $_REQUEST['_wpnonce'] ) ) {
|
||||||
|
$nonce = sanitize_text_field( wp_unslash( $_REQUEST['_wpnonce'] ) );
|
||||||
|
if ( wp_verify_nonce( $nonce, 'bulk-' . $this->_args['plural'] ) ) {
|
||||||
// phpcs:ignore WordPress.Security.NonceVerification.Recommended
|
// phpcs:ignore WordPress.Security.NonceVerification.Recommended
|
||||||
$args['s'] = sanitize_text_field( wp_unslash( $_GET['s'] ) );
|
$args['s'] = sanitize_text_field( wp_unslash( $_GET['s'] ) );
|
||||||
}
|
}
|
||||||
|
}
|
||||||
|
|
||||||
$followers_with_count = FollowerCollection::get_followers_with_count( $this->user_id, $per_page, $page_num, $args );
|
$followers_with_count = FollowerCollection::get_followers_with_count( $this->user_id, $per_page, $page_num, $args );
|
||||||
$followers = $followers_with_count['followers'];
|
$followers = $followers_with_count['followers'];
|
||||||
|
|
Loading…
Reference in a new issue