repo.or.cz
/
htmlpurifier.git
/
search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
log
|
graphiclog1
|
graphiclog2
|
commit
|
commitdiff
|
tree
|
refs
|
edit
|
fork
first
·
prev
·
next
Support for safe external scripts via explicit whitelist.
2012-04-27
Ed
w
ard
Z
.
Yang
Su
p
p
ort
for sa
f
e external s
c
r
i
pts vi
a
exp
l
icit whitelist
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-03-17
Ed
w
ard
Z
.
Yang
Fix problem where stack
e
d AttrTr
a
nsf
o
rm
s
clobber
e
ach
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-03-16
Benj
a
min
Steininger
Add comp
o
s
er
.
json file f
o
r easy install via
c
ompo
s
e
r
.
commit
|
commitdiff
|
tree
2012-03-02
Edward
Z
.
Ya
n
g
Act
u
ally make
U
RI
.
DisableResou
r
ces do some
t
hing
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-02-18
Ed
w
ard Z
.
Yang
Bugfix: _blank
n
o
t blan
k
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-25
E
d
wa
r
d Z
.
Y
ang
Update NEWS
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-19
Edw
a
r
d Z
.
Yang
Release 4
.
4
.
0
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-18
Edward Z
.
Yan
g
Make all of the
t
es
t
s work on all PH
P
ve
r
sio
n
s
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-18
Ed
w
ard Z
.
Yan
g
Avoid doing stupidly c
l
ever reflection tricks that
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-18
E
dw
a
rd Z
.
Yang
Modernize some of
the testing f
a
cili
t
i
e
s
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-17
E
dwa
r
d Z
.
Yang
Tighter
C
SS selector va
l
idation
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-06
Edward Z
.
Yang
R
emark about bypassing host list with punyc
o
de
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-06
E
d
ward Z
.
Yang
Opti
o
nal
s
upport f
o
r
IDNAs with PEAR Net_IDNA2
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-03
E
d
ward Z
.
Yang
Remove
PEARSax3 lexer
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-30
Edward Z
.
Yang
Make forms work for transitional
d
octypes
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-27
E
dward
Z
.
Ya
n
g
Re
m
ove inscrutable TODO, optionalize a
n
other
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-27
E
d
ward Z
.
Yang
Add not
e
about supe
r
seding modules in TODO
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Edward
Z
.
Ya
n
g
Bump mino
r
ver
s
ion nu
m
ber to
4
.
4
.
0
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
E
d
ward
Z
.
Yang
Add test for invalid
S
afeIframe usage
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Br
a
dley
M
.
Froehle
Impl
e
ment I
f
ram
e
module, and pro
v
i
d
e
%
H
T
ML
.
Safe
I
frame
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Edward Z
.
Yang
Add m
o
r
e
attribution
s
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Edwar
d
Z
.
Ya
n
g
Implement
%
HT
M
L
.
Allow
e
dC
o
mments and %H
T
ML
.
A
llo
w
edCommen
t
sRe
g
e
x
p
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Edward Z
.
Yang
Fix broke
n
table
content model,
e
a
s
i
l
y
seen in XH
T
M
L
1
.
1
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
E
d
ward
Z
.
Yang
Properly handle nested subl
i
st
s
by folding
into previous
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Edward Z
.
Yang
Implem
e
nt %
H
TML
.
TargetBlank
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
Edward
Z
.
Yang
A
d
d isBenign and
ge
t
DefaultSchem
e
me
t
hods
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
Edward Z
.
Yang
Add a little bit of do
c
umentation
a
b
ou
t
contexts for
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
Edward
Z
.
Y
ang
Core
.
EscapeNonASCIIC
h
aracters
n
ow a
l
way
s
works, even
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
Edward
Z
.
Yang
A
dd support for
scope attribute on td a
n
d
t
h
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
Edward
Z
.
Yang
Add one more test
for
S
PL autol
o
ad defaults
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
Edw
a
rd Z
.
Yang
F
ix iconv truncation bug
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-18
Edward
Z
.
Yang
Remove spurious ab
s
tract def
i
n
i
tion;
P
HP 5
.
4 doesn
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-18
Edw
a
rd Z
.
Yang
Do
n
'
t
u
ns
e
t
p
a
rser varia
b
le; plays poorly
wi
t
h serialize
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-08-24
Edward
Z
.
Yang
Typofi
x
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-08-24
Edward Z
.
Yang
D
o
n't
a
d
d nofo
l
l
o
w
fo
r
matching
hosts, generalize this
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-08-24
Edward
Z
.
Ya
n
g
U
p
date
INSTALL to avoid
m
issin
g
config snaf
u
, update
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-08-24
Edw
a
rd Z
.
Yang
Do not duplicat
e
nofollow att
r
ibute i
n
t
ransform
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-04-19
Edward Z
.
Yan
g
E
xplic
i
tly i
n
itializ
e
a
n
on
M
o
d
u
l
e to null
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-04-10
Edwa
r
d Z
.
Yang
URI
.
Mu
n
ge m
u
n
ges https to
h
t
tp URIs
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-04-10
Edward Z
.
Yan
g
Color keyword
s
now case-insensitive
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-27
Edward
Z
.
Ya
n
g
Release 4
.
3
.
0
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-27
Edward Z
.
Y
a
ng
F
i
x CSS
U
R
L innerHTM
L
/cssText
e
sca
p
ing
b
ug
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-27
Edw
a
rd Z
.
Yang
Protect
a
gainst font family
i
n
nerHTML/cssTex
t
attacks
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-27
Edward Z
.
Yang
Fix
I
nte
r
net
E
xplo
r
e
r
i
n
nerHTM
L
bug
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-24
Edward Z
.
Yang
Im
p
lement CSS
.
AllowedFonts
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-22
Edwa
r
d Z
.
Yang
Don't
a
utoclose if no
p
arents support the
t
ag
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-21
Edward Z
.
Ya
n
g
Safety u
p
date
f
o
r
nested
ul test
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-17
Edward Z
.
Yang
Fix E_NOTICE from indexing into empty string
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-02-27
Edward Z
.
Y
a
n
g
Fix missing numeric entities
(s
h
ows
up whe
n
Direc
t
Lexi
n
g)
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-01-25
Edwar
d
Z
.
Yang
Dramatica
l
ly r
e
write nu
l
l host UR
I
h
andling
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-01-22
E
dw
a
rd Z
.
Yang
Fix embed
d
i
ng fl
a
sh on non-IE browsers and a
l
low m
o
re
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-01-19
M
axim K
r
izhan
o
v
s
ky
Iterati
v
e traversal
of DOM
.
commit
|
commitdiff
|
tree
2011-01-14
Edward Z
.
Y
ang
B
u
mp version number f
o
r Cache
.
S
e
riali
z
erPermissions
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-01-13
Petr Skoda
Add n
e
w
Cache
.
Serializer
P
ermissions option
.
commit
|
commitdiff
|
tree
2011-01-13
Edward Z
.
Yang
C
h
eck that
a
rg
v
is
s
et before operating on
i
t
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-12-31
Edward Z
.
Yang
Fix b
a
d inte
r
a
ction between bo
o
tstrap autoloa
d
er and
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-12-30
E
d
w
a
rd Z
.
Yang
Fix two bugs with ca
c
hing
o
f customi
z
e
d
raw definiti
o
ns
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-11-21
Edward Z
.
Y
ang
U
p
date
P
HPT instru
c
tions
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-11-12
E
d
ward Z
.
Yang
A
dd initial i
m
pl
e
m
e
ntat
i
on of CSS
.
Trusted
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-11-12
Edward Z
.
Ya
n
g
Add sanity check
a
gainst ze1_compati
b
ility_mode
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-11-12
Edward Z
.
Yang
Fix incorre
c
t PEARSax
3
test assertion
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-10-29
Edward Z
.
Yang
Check
if sch
e
m
a
.
ser w
a
s corrupted
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-10-28
Edward Z
.
Yang
F
i
x
r
emoval of id with
Direct
L
ex by pr
e
s
e
rving armor
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-10-28
N
ick
Pop
e
All
o
w n
o
n-st
a
ti
c
autoload methods w/ P
H
P >
=
5
.
2
.
11
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-28
E
d
ward Z
.
Yang
Escape CDA
T
A
before
h
andling con
d
itional comments
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-28
Edw
a
r
d
Z
.
Yang
Implement HTML
.
No
f
o
l
low f
o
r external links
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-28
Edwar
d
Z
.
Yang
Make IE conditional comment mat
c
hing u
n
greedy
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-15
Edward Z
.
Yang
Release 4
.
2
.
0
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-15
Edward Z
.
Y
ang
Re
n
a
m
e newline
n
ormali
z
ation
d
irective to
s
om
e
thin
g
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-15
T
oma
s
z
Muras
Make newline no
r
malizat
i
on opt
i
onal
.
commit
|
commitdiff
|
tree
2010-09-15
Edward Z
.
Ya
n
g
Sh
i
ft to
4
.
2
.
0 r
e
lease cyc
l
e
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-09
E
dwar
d
Z
.
Yang
Add support for file:// URI schem
e
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-09
E
dward Z
.
Y
a
ng
U
pda
t
e TODO
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-09
Edward Z
.
Yang
I
m
p
lement HTML
.
Flash
A
l
l
owFullSc
r
een
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-04
Edward Z
.
Yan
g
Add %C
S
S
.
F
o
rbiddenPr
o
perties
directive
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-04
E
d
ward Z
.
Yang
Ad
d
documentati
o
n
abo
u
t con
f
iguration d
i
rective types
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-04
Edward Z
.
Yang
R
e
word docum
e
ntation to be
clearer, and give w
a
rning
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-08-27
E
d
ward Z
.
Y
a
ng
Fi
x
Mac Snow Leopard APC bug
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-06-30
Edward Z
.
Yang
Tig
h
ten up ig
n
ore spec
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-06-30
Edward Z
.
Yan
g
Actually make URI
.
D
isableResources
d
o somethin
g
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-06-21
Edward Z
.
Yang
Ad
d
e
d
%Core
.
RemoveProcessi
n
gInstructions
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-06-18
Edward Z
.
Yang
Fi
x
i
m
p
roper handling
o
f
I
E
c
onditional comments
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-06-01
Edward Z
.
Yang
Release 4
.
1
.
1
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-06-01
Edwar
d
Z
.
Yang
Fix undefined
index w
a
r
ning
s
in maint
e
nance sc
r
ipts
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-06-01
Edward
Z
.
Yang
Fix bug in
parsing single attribute with entities
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-06-01
Edward
Z
.
Yan
g
Rewrite CSS url() and font-family out
p
ut
l
ogic
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-05-21
E
dward Z
.
Y
a
n
g
Make te
s
t sc
r
ipt le
s
s cha
t
t
y w
h
en lo
g
_e
r
rors is on
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-05-21
E
d
wa
r
d
Z
.
Y
a
ng
Remove shebang and
+
x
f
rom test script
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-05-18
E
d
w
ard
Z
.
Ya
n
g
Fi
x
i
n
f
i
nite loo
p
involving wrapp
i
ng formedness
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-05-05
Ed
w
ard Z
.
Y
ang
Fix bu
g
i
n
backgr
o
u
n
d-position wit
h
c
e
nter k
e
yword
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-05-04
Edw
a
rd Z
.
Yang
Emit erro
r
s
w
hen body is
e
x
tract
e
d
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-04-26
Edward Z
.
Ya
n
g
Relea
s
e
4
.
1
.
0
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-04-26
Edward Z
.
Y
a
ng
Mute S
T
RICT errors
f
rom CSSTi
d
y and don't run PEAR
S
ax3
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-04-26
Edw
a
r
d
Z
.
Yang
Always quote the contents of url() in CSS
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-04-17
E
dward Z
.
Yang
Remove +x bit
fro
m
Remove
S
pa
n
sWithoutA
t
tribut
e
s
.
ph
p
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-03-30
Edwar
d
Z
.
Yang
S
upport for fl
a
sh
v
ars
i
n HTM
L
.
SafeEmb
e
d
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-03-10
Edward Z
.
Ya
n
g
Handle <ol
>
<ol> proper
l
y by adding missing <li> tag
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-03-09
Edwar
d
Z
.
Yang
Improve handling of malform
e
d object
p
arameters
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-03-08
E
d
war
d
Z
.
Yang
Rem
o
v
e c
a
ll
-
time pass-by-
r
e
f
eren
c
e
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-03-08
E
d
ward Z
.
Yang
Impl
e
ment In
t
e
rnet
E
xplorer
c
ompatibility code for
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
next