|
|
|
|
|
by rscale
5166 days ago
|
|
I just patched my wootheme'd wordpress sites to address the issue until an official fix is out, so at least one person got positive value from this post. That said, I really wish the original public report had been a private report. |
|
[update] that wouldn't work either. it would still allow people to insert random shortcodes with whatever params they like. i'm not sure what the point of this function is, I don't think it should allow shortcodes to be passed in at all via _REQUEST