Changeset 8023

Show
Ignore:
Timestamp:
05/30/08 20:43:36 (6 months ago)
Author:
ryan
Message:

Add some noncing. Props andy.

Files:

Legend:

Unmodified
Added
Removed
Modified
Copied
Moved
  • trunk/wp-admin/async-upload.php

    r8021 r8023  
    2727} 
    2828 
     29check_admin_referer('media-form'); 
     30 
    2931$id = media_handle_upload('async-upload', $_REQUEST['post_id']); 
    3032if (is_wp_error($id)) { 
  • trunk/wp-admin/includes/media.php

    r7998 r8023  
    791791                "post_id" : "<?php echo $post_id; ?>", 
    792792                "auth_cookie" : "<?php echo $_COOKIE[AUTH_COOKIE]; ?>", 
     793                "_wpnonce" : "<?php echo wp_create_nonce('media-form'); ?>", 
    793794                "type" : "<?php echo $type; ?>", 
    794795                "tab" : "<?php echo $tab; ?>",