repo.or.cz
/
htmlpurifier.git
/
search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
log
|
graphiclog1
|
graphiclog2
|
commit
|
commitdiff
|
tree
|
refs
|
edit
|
fork
first
·
prev
·
next
Tighten up invariants.
2013-07-27
Edward Z
.
Yang
Tighten up invariants
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-07-27
Edward
Z
.
Yang
E
x
plicitly specify decorator name
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-07-27
Ed
w
ard Z
.
Yang
New directive
%
C
ore
.
A
llowHos
t
na
m
eUnderscore
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-07-18
Edward Z
.
Y
ang
Add note fall through is intentiona
l
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-06-06
Edward Z
.
Yang
M
ake l
i
st nesti
n
g
t
est
m
ore sensitive
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-05-22
Edward
Z
.
Yang
Use info_pa
r
ent_
d
ef to
g
et
p
ar
e
nt info
r
ma
t
ion, si
n
ce
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-05-21
Edw
a
rd Z
.
Yang
Ig
n
o
re commas and nb
s
ps fo
r
linkification
.
Thanks
n
A
S
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-05-18
E
dward Z
.
Yang
Doc fix
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-04-16
Edward
Z
.
Yang
Make URI
parsing algorithm more
s
t
ri
c
t
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-02-21
Edward Z
.
Yang
F
ix NEWS e
n
try
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-02-18
Edward
Z
.
Y
a
ng
Release 4
.
5
.
0
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-02-17
Edward Z
.
Yang
Add %Cor
e
.
DisableExclu
d
es
d
i
rect
i
ve
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-10-27
Edward Z
.
Y
a
n
g
Use SHA-1 ins
t
e
ad
of MD5
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-10-27
E
d
ward Z
.
Yang
B
lacklist more tags fro
m
Remove
E
m
pty
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-10-27
Edward Z
.
Y
ang
Cleanup af
t
er da
t
a
valida
t
ion
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-10-27
E
d
wa
r
d Z
.
Yang
Do ch
e
cks ag
a
inst ic
o
nvAvailable because PHP
5
.
4 has
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-10-11
Edward Z
.
Yang
Commen
t
for
b
ug
that ne
e
ds to get fixed
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-10-11
E
dward Z
.
Yang
CSS propertie
s
page-b
r
eak-*
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-07-30
Edward Z
.
Yang
Fix bug with non-lower cas
e
color
n
ames
i
n HTM
L
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-07-27
Edwa
r
d Z
.
Yang
Permit
u
n
dersco
r
es in fo
n
t
-
f
amilie
s
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-06-16
Edward Z
.
Yang
More support for white
-
space
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-06-02
Edward Z
.
Yang
D
o
n't lower-c
a
se components of backgrou
n
d
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-05-26
E
d
w
ard Z
.
Yang
Support f
o
r i
n
line-
b
lock
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-05-15
E
d
w
ar
d
Z
.
Yang
F
ix in AttrTransform_Nofol
l
ow
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-05-02
Ed
w
ard Z
.
Ya
n
g
U
se prepend for
a
utoloading on
PHP 5
.
3+
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-04-27
Edward Z
.
Yang
Support fo
r
saf
e
external scripts vi
a
explicit
w
hitelist
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-03-17
Edward Z
.
Yang
Fix problem where stacked
A
t
trTran
s
f
o
rms clo
b
b
er
each
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-03-02
Edward Z
.
Yang
Actu
a
lly make U
R
I
.
DisableRes
o
ur
c
e
s
do something
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-02-18
E
d
ward
Z
.
Yang
Bug
f
i
x: _
b
lank not
b
lank
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-25
Edward Z
.
Yang
U
p
date
N
EWS
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-19
Edward Z
.
Y
a
ng
Release 4
.
4
.
0
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-18
Ed
w
ard Z
.
Yang
M
a
ke all of th
e
te
s
ts work on a
l
l
PHP versions
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-18
Edward Z
.
Y
a
n
g
Avoid doing stupidly clever
r
e
f
lec
t
ion
t
ricks th
a
t
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-18
Edward Z
.
Yang
Modernize some of the testing facil
i
ties
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-17
Edward Z
.
Y
ang
Tig
h
ter CSS select
o
r v
a
lidatio
n
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-06
Edward Z
.
Y
a
ng
Remark
abo
u
t
bypas
s
ing
h
ost list with
punycode
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-06
Edward Z
.
Yan
g
Optional
s
u
p
p
ort
for IDNAs with P
E
AR N
e
t
_
IDNA2
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-03
Edw
a
r
d
Z
.
Y
a
ng
Remove P
E
ARSax3 le
x
er
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-30
Edward Z
.
Y
a
ng
Make forms work for
transitional
d
octypes
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-27
Edward Z
.
Yang
Rem
o
ve inscrutable TODO, opt
i
ona
l
ize another
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-27
Edward Z
.
Yang
Add note
about superseding mo
d
ules
i
n TODO
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Edward Z
.
Yang
B
ump
minor versi
o
n
n
u
mber to 4
.
4
.
0
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Edward Z
.
Yan
g
Add test for invalid Safe
I
frame usage
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
E
d
ward Z
.
Yang
Add mo
r
e attri
b
u
ti
o
ns
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
E
d
ward Z
.
Yang
Implemen
t
%HTML
.
Allow
e
d
Comments and %HTML
.
AllowedCommentsRegexp
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Edward Z
.
Y
a
n
g
F
i
x broken table content model, easi
l
y seen in XHTML1
.
1
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Edwa
r
d Z
.
Y
ang
Properly
ha
n
d
l
e
n
ested sublists by folding into previous
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Edward
Z
.
Yang
Im
p
l
e
men
t
%HTML
.
Targ
e
t
Blank
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
Edward Z
.
Yang
Add isBenign
and getDef
a
u
ltSche
m
e
methods
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
E
d
ward Z
.
Ya
n
g
Ad
d
a
lit
t
le bit of docum
e
nt
a
tion a
b
out contex
t
s
for
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
E
d
wa
r
d Z
.
Yang
C
o
re
.
EscapeNon
A
S
C
I
IC
h
a
racte
r
s
now al
w
ays wor
k
s, even
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
Edward Z
.
Yang
Add sup
p
ort for scope attribute on td and t
h
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
E
dward Z
.
Y
a
ng
Add one more
test for
SP
L
autoload defaults
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
E
d
ward Z
.
Yang
Fix iconv truncation bug
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-18
Edward Z
.
Yang
Rem
o
ve spur
i
o
u
s abstract de
f
inition; PHP 5
.
4 do
e
sn
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-18
Edw
a
rd Z
.
Yang
Don't uns
e
t parser variable;
p
lays
po
o
rly with serialize
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-08-24
Edward Z
.
Yang
Typofix
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-08-24
Edwa
r
d Z
.
Yang
Don't add nofollow for ma
t
ching hosts, gene
r
alize thi
s
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-08-24
Edward Z
.
Yang
Up
d
a
t
e
INSTALL to
av
o
id m
i
ssi
n
g co
n
fig s
n
a
fu
,
up
d
ate
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-08-24
Edward Z
.
Yang
D
o
n
o
t
duplicate nofo
l
l
o
w
a
t
t
ribute in transform
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-04-19
Edward Z
.
Y
ang
Explici
t
ly initialize anonModule to null
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-04-10
Edward
Z
.
Yang
URI
.
Mung
e
munges https to http URIs
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-04-10
Edward Z
.
Yang
Color
keywords now c
a
s
e
-insensitive
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-27
Edw
a
rd
Z
.
Y
ang
Releas
e
4
.
3
.
0
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-27
E
dward Z
.
Yang
Fix C
S
S U
R
L
in
n
e
r
HTM
L
/
c
ssText escaping bug
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-27
Edward Z
.
Yang
Prote
c
t against
font fami
l
y innerHTML/cssText attacks
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-27
E
d
ward Z
.
Yan
g
Fix Interne
t
Explorer innerH
T
ML bug
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-24
Edward Z
.
Yang
Imple
m
ent CSS
.
Allo
w
edFonts
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-22
Edwa
r
d
Z
.
Y
ang
Don'
t
a
u
toclose i
f
no
p
arents support the t
a
g
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-21
Edwar
d
Z
.
Yang
S
a
fety update fo
r
nes
t
ed ul tes
t
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-17
Edw
a
rd
Z
.
Y
ang
Fix E_NOT
I
CE f
r
om indexing in
t
o empty string
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-02-27
E
dward Z
.
Yan
g
Fix missing numeric e
n
tities (
s
hows
up when Direc
t
Le
x
ing)
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-01-25
Edwa
r
d Z
.
Yan
g
Drama
t
i
cally rewrite null h
o
st
U
RI handli
n
g
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-01-22
Edward Z
.
Y
a
ng
Fi
x
embeddin
g
f
lash on non-IE browsers and allow more
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-01-14
E
dward Z
.
Yang
Bump versio
n
number for Cache
.
Serializ
e
rPermissions
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-01-13
Edwa
r
d Z
.
Yan
g
Check
th
a
t a
r
gv i
s
set before o
p
erating on it
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-12-31
Edward Z
.
Yang
Fix bad
interact
i
o
n b
e
t
ween
bootstrap au
t
o
l
oader and
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-12-30
Edward Z
.
Yang
F
ix two
b
ugs
w
ith
caching of customized
r
aw
d
e
f
initions
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-11-21
E
dward Z
.
Yang
Update
P
HPT i
n
st
r
uctions
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-11-12
Edward Z
.
Yang
Add initial im
p
lem
e
ntation of
CSS
.
Trust
e
d
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-11-12
Edward Z
.
Y
ang
Add sanity
check against ze1_compat
i
b
i
lity_mode
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-11-12
Ed
w
a
r
d
Z
.
Yang
Fix inc
o
rrect PEARS
a
x3 test assertion
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-10-29
Edw
a
rd Z
.
Y
ang
Check if schema
.
s
e
r was corrupted
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-10-28
Edwa
r
d Z
.
Y
ang
Fix removal of i
d
with
D
i
r
ectLe
x
b
y
preserving armor
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-28
Ed
w
ard Z
.
Y
a
ng
Esc
a
pe CDATA be
f
ore handling
conditi
o
nal com
m
ent
s
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-28
Edward Z
.
Yang
I
mplement HTML
.
Nofollow f
o
r ext
e
rnal links
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-28
Edward
Z
.
Yang
Make IE cond
i
tional comme
n
t matching ungreedy
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-15
Edward Z
.
Yang
Release
4
.
2
.
0
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-15
Edward Z
.
Yang
R
e
name
n
ewline
n
ormalizati
o
n d
i
rect
i
ve to some
t
hing
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-15
E
d
ward
Z
.
Yang
S
hift to
4
.
2
.
0 r
e
lease cycle
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-09
Edwar
d
Z
.
Yang
Add su
p
po
r
t
f
or fi
l
e:// URI
s
c
h
eme
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-09
E
dwar
d
Z
.
Yang
Update TODO
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-09
Edward Z
.
Yang
I
mple
m
ent HTML
.
FlashAl
l
owFullScr
e
en
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-04
Edward Z
.
Yang
Add %C
S
S
.
ForbiddenProper
t
ie
s
dire
c
tive
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-04
Edwa
r
d
Z
.
Yang
A
dd docum
e
ntati
o
n
about configuratio
n
direc
t
ive types
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-04
E
dward Z
.
Ya
n
g
Re
w
o
r
d docum
e
ntation to be cleare
r
,
a
nd give warn
i
ng
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-08-27
Edwar
d
Z
.
Y
ang
Fix Mac Snow Leopard APC bug
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-06-30
E
dward Z
.
Yan
g
Tigh
t
en
u
p
ignore spe
c
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-06-30
Edwa
r
d Z
.
Yang
Actually
m
ake URI
.
Disa
b
leResources do som
e
t
h
ing
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-06-21
Edward Z
.
Y
a
n
g
Ad
d
ed %Core
.
R
e
m
o
vePro
c
essingInst
r
uctio
n
s
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
next