General: Replace all esc_url_raw() calls in core with sanitize_url().
This aims to improve performance by calling `sanitize_url()` directly, instead of the `esc_url_raw()` wrapper. As of WordPress 6.1, `sanitize_url()` is the recommended function for sanitizing a URL for database or redirect usage. Follow-up to [11383], [13096], [51597], [53452]. Props benjgrolleau, peterwilsoncc, SergeyBiryukov. Fixes #55852. Built from https://develop.svn.wordpress.org/trunk@53455 git-svn-id: http://core.svn.wordpress.org/trunk@53044 1a063a9b-81f0-0310-95a4-ce76da25c4cd
This commit is contained in:
@@ -888,7 +888,7 @@ final class WP_Theme implements ArrayAccess {
|
||||
break;
|
||||
case 'ThemeURI':
|
||||
case 'AuthorURI':
|
||||
$value = esc_url_raw( $value );
|
||||
$value = sanitize_url( $value );
|
||||
break;
|
||||
case 'Tags':
|
||||
$value = array_filter( array_map( 'trim', explode( ',', strip_tags( $value ) ) ) );
|
||||
|
||||
Reference in New Issue
Block a user