[Tickets #10477] Re: default setting for inline images: give link to show them

bugs at horde.org bugs at horde.org
Tue Sep 6 21:17:28 UTC 2011


DO NOT REPLY TO THIS MESSAGE. THIS EMAIL ADDRESS IS NOT MONITORED.

Ticket URL: http://bugs.horde.org/ticket/10477
------------------------------------------------------------------------------
  Ticket             | 10477
  Updated By         | jpratt at bluehost.com
  Summary            | default setting for inline images: give link to show
                     | them
  Queue              | IMP
  Version            | 4.3.9
  Type               | Enhancement
  State              | Rejected
  Priority           | 2. Medium
  Milestone          |
  Patch              |
  Owners             |
------------------------------------------------------------------------------


jpratt at bluehost.com (2011-09-06 21:17) wrote:

> Displaying HTML messages by default is a gigantic security hole that  
> an admin has to make a choice to allow locally.

OK can I suggest a better error message, such as HTML view is disabled  
for security reasons.

Also, are you saying that this is a gigantic security hole in general  
for all webmail services, even yahoo and gmail? Or specific to horde?

Thank you









More information about the bugs mailing list