diff options
Diffstat (limited to 'wp-admin/admin-post.php')
-rw-r--r-- | wp-admin/admin-post.php | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/wp-admin/admin-post.php b/wp-admin/admin-post.php index e71f5cd..be32e07 100644 --- a/wp-admin/admin-post.php +++ b/wp-admin/admin-post.php @@ -29,7 +29,7 @@ nocache_headers(); /** This action is documented in wp-admin/admin.php */ do_action( 'admin_init' ); -$action = ! empty( $_REQUEST['action'] ) ? $_REQUEST['action'] : ''; +$action = ! empty( $_REQUEST['action'] ) ? sanitize_text_field( $_REQUEST['action'] ) : ''; // Reject invalid parameters. if ( ! is_scalar( $action ) ) { |