cvs commit: imp compose.php3 login.php3 message.php3 imp/docs CHANGES imp/templates/status body.inc

Brent J. Nordquist bjn@horde.org
Thu, 28 Mar 2002 08:53:18 -0800 (PST)


bjn         2002/03/28 08:53:18 PST

  Modified files:        (Branch: STABLE_2_2)
    .                    compose.php3 login.php3 message.php3 
    docs                 CHANGES 
    templates/status     body.inc 
  Log:
  Prevent CSS attacks by filtering URL parameters to eliminate malicious
  values (e.g. JavaScript tags).
  
  Submitted by: Nuno Loureiro <nuno@eth.pt>
  
  Revision   Changes    Path
  2.35.2.85  +5 -2      imp/Attic/compose.php3
  2.10.2.17  +7 -3      imp/Attic/login.php3
  2.23.2.70  +11 -3     imp/Attic/message.php3
  1.1.2.213  +2 -1      imp/docs/CHANGES
  2.2.2.6    +7 -1      imp/templates/status/Attic/body.inc

  Chora Links:
  http://cvs.horde.org/diff.php/imp/Attic/compose.php3?r1=2.35.2.84&r2=2.35.2.85&ty=u
  http://cvs.horde.org/diff.php/imp/Attic/login.php3?r1=2.10.2.16&r2=2.10.2.17&ty=u
  http://cvs.horde.org/diff.php/imp/Attic/message.php3?r1=2.23.2.69&r2=2.23.2.70&ty=u
  http://cvs.horde.org/diff.php/imp/docs/CHANGES?r1=1.1.2.212&r2=1.1.2.213&ty=u
  http://cvs.horde.org/diff.php/imp/templates/status/Attic/body.inc?r1=2.2.2.5&r2=2.2.2.6&ty=u