[cvs] commit: framework/MIME/MIME/Viewer html.php
Jan Schneider
jan at horde.org
Mon Feb 7 06:20:06 PST 2005
jan 2005-02-07 06:20:06 PST
Modified files:
MIME/MIME/Viewer html.php
Log:
Be less restrictive with what characters we allow between < and the malicious
tags. As soon as an alphabetic character appears after the <, this should be
interpreted as part of the tag by all browsers, right?
This change allows the malicious tags as words inside tag attributes,
e.g. link urls.
Revision Changes Path
1.18 +7 -7 framework/MIME/MIME/Viewer/html.php
Chora Links:
http://cvs.horde.org/diff.php/framework/MIME/MIME/Viewer/html.php?r1=1.17&r2=1.18&ty=u
More information about the cvs
mailing list