diff --git a/inc/user/class-opalestate-user-form-handler.php b/inc/user/class-opalestate-user-form-handler.php index ba2940c6..166380f0 100755 --- a/inc/user/class-opalestate-user-form-handler.php +++ b/inc/user/class-opalestate-user-form-handler.php @@ -25,10 +25,11 @@ class Opalestate_User_Form_Handler { */ public static function process_login() { - $nonce_value = isset( $_POST['_wpnonce'] ) ? sanitize_text_field( $_POST['_wpnonce'] ) : ''; + $nonce_value = isset( $_POST['opalestate-login-popup-nonce'] ) ? sanitize_text_field( $_POST['opalestate-login-popup-nonce'] ) : ''; $nonce_value = isset( $_POST['opalestate-login-nonce'] ) ? sanitize_text_field( $_POST['opalestate-login-nonce'] ) : $nonce_value; + /* verify wp nonce */ if ( ! wp_verify_nonce( $nonce_value, 'opalestate-login' ) ) { return; diff --git a/inc/vendors/elementor/widgets/opalestate-account-button.php b/inc/vendors/elementor/widgets/opalestate-account-button.php index abf71bc0..7d67ebca 100755 --- a/inc/vendors/elementor/widgets/opalestate-account-button.php +++ b/inc/vendors/elementor/widgets/opalestate-account-button.php @@ -525,7 +525,7 @@ class Opalestate_Account_Button_Elementor_Widget extends Opalestate_Elementor_Wi
- +