Skip to content

Added an option to add nonce security to the add and remove#16

Open
eliotfallon213 wants to merge 1 commit into
hberberoglu:masterfrom
eliotfallon213:master
Open

Added an option to add nonce security to the add and remove#16
eliotfallon213 wants to merge 1 commit into
hberberoglu:masterfrom
eliotfallon213:master

Conversation

@eliotfallon213

Copy link
Copy Markdown

I worked on a site that was "pen" tested recently and to cut a long story short - it was pulled up on not using nonces. It was using this plugin so I have altered it to perform a check on it.

Obviously if a site is cached you won't want to be using this option. I'm fully aware this is a minor issue and wanting to use this feature will be an edge case, but I'd written the code so thought I'd better pay it back as it's a great plugin.

@maxfenton

Copy link
Copy Markdown
Contributor

Still think this is a good idea.

Comment thread wp-favorite-posts.php
if (!wpfp_get_option('dont_load_js_file'))
wp_enqueue_script( "wp-favorite-posts", WPFP_PATH . "/wpfp.js", array( 'jquery' ) );
if (!wpfp_get_option('dont_load_js_file'))
wp_enqueue_script( "wp-favroite-posts", WPFP_PATH . "/wpfp.js", array( 'jquery' ) );

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

typo mistake on "favorite"

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants