From db95c79eb45fdf8103725fd2bf7adc84a2b9ac82 Mon Sep 17 00:00:00 2001 From: Brian Miyaji Date: Sun, 4 Oct 2015 16:34:18 +1100 Subject: [PATCH] Escape admin inputs --- includes/admin/class-sp-admin-taxonomies.php | 4 ++-- includes/admin/post-types/class-sp-admin-cpt-team.php | 4 ++-- .../meta-boxes/class-sp-meta-box-event-details.php | 2 +- .../meta-boxes/class-sp-meta-box-event-performance.php | 6 +++--- .../meta-boxes/class-sp-meta-box-event-results.php | 2 +- .../post-types/meta-boxes/class-sp-meta-box-list-data.php | 6 +++--- .../meta-boxes/class-sp-meta-box-player-details.php | 2 +- .../meta-boxes/class-sp-meta-box-player-metrics.php | 3 ++- .../meta-boxes/class-sp-meta-box-player-statistics.php | 2 +- .../meta-boxes/class-sp-meta-box-table-data.php | 6 +++--- .../meta-boxes/class-sp-meta-box-team-details.php | 8 ++++---- 11 files changed, 23 insertions(+), 22 deletions(-) diff --git a/includes/admin/class-sp-admin-taxonomies.php b/includes/admin/class-sp-admin-taxonomies.php index 9bbe8efd..b974363f 100644 --- a/includes/admin/class-sp-admin-taxonomies.php +++ b/includes/admin/class-sp-admin-taxonomies.php @@ -82,11 +82,11 @@ class SP_Admin_Taxonomies {
- +
- +

- +

diff --git a/includes/admin/post-types/meta-boxes/class-sp-meta-box-event-performance.php b/includes/admin/post-types/meta-boxes/class-sp-meta-box-event-performance.php index 87b46214..88e945b9 100644 --- a/includes/admin/post-types/meta-boxes/class-sp-meta-box-event-performance.php +++ b/includes/admin/post-types/meta-boxes/class-sp-meta-box-event-performance.php @@ -214,7 +214,7 @@ class SP_Meta_Box_Event_Performance { $player_performance = sp_array_value( $data, $player_id, array() ); $value = sp_array_value( $player_performance, $column, '' ); ?> - readonly="readonly"value="" /> + readonly="readonly"value="" />   @@ -240,7 +240,7 @@ class SP_Meta_Box_Event_Performance { - + @@ -270,7 +270,7 @@ class SP_Meta_Box_Event_Performance { $value = sp_array_value( $player_performance, $column, '' ); ?> - + diff --git a/includes/admin/post-types/meta-boxes/class-sp-meta-box-event-results.php b/includes/admin/post-types/meta-boxes/class-sp-meta-box-event-results.php index 7f6ccc32..8f378c52 100644 --- a/includes/admin/post-types/meta-boxes/class-sp-meta-box-event-results.php +++ b/includes/admin/post-types/meta-boxes/class-sp-meta-box-event-results.php @@ -267,7 +267,7 @@ class SP_Meta_Box_Event_Results { $label ): $value = sp_array_value( $team_results, $column, '' ); ?> - placeholder="" /> + placeholder="" /> "> @@ -124,7 +124,7 @@ class SP_Meta_Box_List_Data { $value = sp_array_value( $player_stats, $column, '' ); $placeholder = sp_array_value( sp_array_value( $placeholders, $player_id, array() ), $column, 0 ); ?> - + - + ID, 'sp_metrics', true ); $args = array( @@ -35,7 +36,7 @@ class SP_Meta_Box_Player_Metrics { foreach ( $vars as $var ): ?>

post_title; ?>

-

+

'; + echo ''; ?> diff --git a/includes/admin/post-types/meta-boxes/class-sp-meta-box-table-data.php b/includes/admin/post-types/meta-boxes/class-sp-meta-box-table-data.php index 99d60101..2ce92893 100644 --- a/includes/admin/post-types/meta-boxes/class-sp-meta-box-table-data.php +++ b/includes/admin/post-types/meta-boxes/class-sp-meta-box-table-data.php @@ -84,7 +84,7 @@ class SP_Meta_Box_Table_Data { @@ -93,7 +93,7 @@ class SP_Meta_Box_Table_Data { $value = sp_array_value( $team_stats, $column, '' ); $placeholder = sp_array_value( sp_array_value( $placeholders, $team_id, array() ), $column, 0 ); ?> - + $label ): $value = sp_array_value( sp_array_value( $adjustments, $team_id, array() ), $column, '' ); ?> - +

-

+

-

+