Scott Taylor e3a3ba4caa Improve/update escaping in default widgets:
* wrap some variables in `esc_attr()` before echoing
* replace some `strip_tags()` calls with `sanitize_text_field()`
* call `esc_url()` when wrapping some URLs

Props welcher.
See #23012.


git-svn-id: https://develop.svn.wordpress.org/trunk@33814 602fd350-edb4-49c9-b593-d223f7449a82
2015-08-30 05:37:53 +00:00
2015-08-30 03:42:49 +00:00
Description
No description provided
257 MiB
Languages
PHP 81.5%
CSS 8.9%
JavaScript 8.1%
SCSS 0.8%
HTML 0.7%