Mark Jaquith On WordPress Security For Plugin Developers

hardening plugins against acronym attacks

I’ve been pretty aware of the risks of SQL injection and am militant about keeping my database interactions clean. Mark Jaquith today reminded me about the need to make sure my browser output is filtered through clean_url(), sanitize_url(), and attribute_escape(). Furthermore, we all need to remember current_user_can(), check_admin_referer(), and nonces.

No Comments Yet

No comments yet.

Comments RSS TrackBack Identifier URI

Leave a comment

 

User contributed tags for this post:

googl.coom (20) - wordpress (16) - googl coom (14) - google.coom (7) - wwww googl com (7) - www-goog-coom (6) - www googl coom (6) - www;googl;coom (6) - japon pono (6) - www.GooGl. coom (5) - www.googl.coom (5) - www.xxltv.com (5) - googlcoom (5) - ? www.googl.coom (4) - www.zeexi.c0m (4) - goog.coom (4) - www.coom googl (4) - goog coom (4) - www.googl .coom (3) - www goog coom (3) - google coom tr (3) - Www.Waptrick.C0m (3) - www,googl,coom (3) - www.goog.coom (2) - VIDUO GOOGL (2) - googl wwwcom (2) - w w w googl.com (2) - google.coom.tr (2) -