From 75a62f2e1e5fdb5967725028ef64714602928b3e Mon Sep 17 00:00:00 2001 From: ryan Date: Mon, 6 Mar 2006 08:19:41 +0000 Subject: [PATCH] Add referer checks. Props masquerade. git-svn-id: http://svn.automattic.com/wordpress/trunk@3618 1a063a9b-81f0-0310-95a4-ce76da25c4cd --- wp-admin/post.php | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/wp-admin/post.php b/wp-admin/post.php index 750990554..c945be13c 100644 --- a/wp-admin/post.php +++ b/wp-admin/post.php @@ -23,7 +23,8 @@ $action = "delete"; switch($action) { case 'post': - + check_admin_referer(); + $post_ID = write_post(); // Redirect. @@ -92,6 +93,8 @@ case 'editattachment': add_post_meta($post_id, '_wp_attachment_metadata', $newmeta); case 'editpost': + check_admin_referer(); + $post_ID = edit_post(); if ($_POST['save']) {