repo.or.cz
/
htmlpurifier.git
/
search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
log
|
graphiclog1
|
graphiclog2
|
commit
|
commitdiff
|
tree
|
refs
|
edit
|
fork
first
·
prev
·
next
New directive %Core.AllowHostnameUnderscore
2013-07-27
E
d
ward Z
.
Yang
New directive %Core
.
AllowHostnameUn
d
e
rs
c
ore
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-07-18
Edward
Z
.
Yang
Add not
e
fa
l
l through is intentional
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-06-06
Edw
a
rd Z
.
Y
a
n
g
Make
l
ist nesting
test more sensiti
v
e
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-05-22
Edward Z
.
Yang
Use info_p
a
rent_def to get
p
arent informatio
n
, since
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-05-21
Edward Z
.
Y
a
ng
I
g
nore commas and nbsps for l
i
n
kific
a
tion
.
Thanks n
A
S
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-05-18
Ed
w
ard Z
.
Yang
Doc fix
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-04-16
E
d
w
ard Z
.
Yang
Make URI parsing algorithm
mo
r
e strict
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-02-21
Edward Z
.
Yang
Fi
x
NEWS
e
ntry
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-02-18
Edward Z
.
Yang
Rel
e
ase 4
.
5
.
0
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-02-17
Edward
Z
.
Yang
Add %Cor
e
.
D
i
s
a
bleExcludes
directive
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-10-27
Edward
Z
.
Yan
g
U
s
e
SHA-1 instead of MD5
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-10-27
Edward Z
.
Y
a
ng
Blacklist
m
ore tag
s
from RemoveE
m
pty
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-10-27
Ed
w
ard Z
.
Ya
n
g
Clean
u
p after data validatio
n
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-10-27
Edward Z
.
Ya
n
g
Do checks a
g
ainst
i
convAvail
a
ble because P
H
P
5
.
4 has
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-10-11
Ed
w
a
rd Z
.
Yang
Com
m
ent
for
bug t
h
at needs to get fi
x
ed
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-10-11
Edward Z
.
Ya
n
g
CSS properties page-break-*
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-07-30
E
dward Z
.
Yang
Fix bug wi
t
h
non-
l
ower case color
names in HTML
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-07-27
Edward Z
.
Yang
Permit underscore
s
in fon
t
-
families
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-06-16
Edward Z
.
Yang
M
o
re sup
p
ort for white
-
spac
e
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-06-02
Edward Z
.
Yang
Don'
t
lower-case compone
n
t
s of back
g
round
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-05-26
E
dward Z
.
Yan
g
Support for in
l
in
e
-b
l
ock
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-05-15
Edward Z
.
Yang
Fix in AttrT
r
a
nsform_Nofollo
w
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-05-02
Edwar
d
Z
.
Yang
Use p
r
epend f
o
r autoloading
on PHP 5
.
3
+
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-04-27
Edward Z
.
Yang
Support
f
or safe external scrip
t
s via e
x
plicit whi
t
el
i
st
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-03-17
E
d
wa
r
d Z
.
Ya
n
g
Fix proble
m
where
s
ta
c
ked AttrTransforms
c
lobber each
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-03-02
Edw
a
rd
Z
.
Yang
A
ctually make URI
.
Di
s
able
R
e
s
ources do something
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-02-18
E
d
ward Z
.
Y
a
ng
Bugfix: _b
l
ank
n
o
t
blank
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-25
Edward Z
.
Yang
Upd
a
te NEWS
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-19
Edward Z
.
Y
ang
Release 4
.
4
.
0
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-18
Edw
a
rd Z
.
Y
ang
Make all of the tests wor
k
on all
PHP vers
i
ons
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-18
Edwa
r
d Z
.
Ya
n
g
A
v
o
id doing stup
i
dly
c
lever
r
eflection tricks that
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-18
Edwa
r
d
Z
.
Yang
Modern
i
ze so
m
e
o
f the testing facili
t
ies
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-17
E
d
w
ard Z
.
Yang
Tight
e
r CSS
s
elect
o
r validation
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-06
Edwar
d
Z
.
Yang
Remark about bypass
i
ng host list with punycode
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-06
Edward Z
.
Yang
O
p
t
io
n
al support for IDN
A
s w
i
th
P
EAR Net_IDN
A
2
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-03
Edward Z
.
Yang
Remove P
E
AR
S
ax3
l
ex
e
r
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-30
E
dward Z
.
Y
ang
Make forms work f
o
r
transiti
o
n
a
l docty
p
e
s
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-27
Edward
Z
.
Yang
Re
m
ove inscrut
a
bl
e
T
ODO, optionalize another
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-27
E
dward Z
.
Yang
Add note about superseding
modules in TODO
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-26
Edward Z
.
Yang
Bump minor
v
e
rsion number t
o
4
.
4
.
0
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-26
E
dward
Z
.
Yang
A
d
d
test for invalid SafeIframe
u
s
age
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-26
Edward Z
.
Y
ang
Add
m
ore
a
ttr
i
b
u
t
io
n
s
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-26
Edwa
r
d
Z
.
Yang
I
m
plement %HTML
.
AllowedComme
n
ts
a
n
d
%H
T
ML
.
AllowedCom
m
entsRegexp
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-26
Edward Z
.
Yang
Fix
br
o
ken table con
t
ent
model, easily seen
in XH
T
ML1
.
1
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-26
Edwar
d
Z
.
Y
ang
Properly han
d
le nested sublists b
y
fold
i
ng
i
nto previous
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-26
Edwar
d
Z
.
Yang
Im
p
lement %HTML
.
Tar
g
etBl
a
nk
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-25
Edward Z
.
Yang
Add isBen
i
gn and getDefaultScheme
methods
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-25
Ed
w
ard
Z
.
Yan
g
Add a l
i
tt
l
e
b
it of doc
u
m
e
ntatio
n
a
b
out contex
t
s
f
o
r
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-25
Edward
Z
.
Yang
Core
.
EscapeNonASCIICharacters
n
ow a
l
ways
w
o
r
ks, even
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-25
Edward
Z
.
Y
a
ng
Add support fo
r
scope attribut
e
o
n td and th
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-25
Ed
w
ard Z
.
Yang
A
d
d one m
o
re test for SPL a
u
toload
d
efault
s
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-25
E
d
ward Z
.
Yang
Fi
x
iconv truncati
o
n bug
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-18
Edward Z
.
Ya
n
g
R
e
mov
e
spurious abstr
a
ct d
e
finition; PHP 5
.
4 doesn
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-18
Edward Z
.
Ya
n
g
Don't unset
p
arser var
i
able; play
s
poorly wi
t
h s
e
rialize
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-08-24
Edwar
d
Z
.
Y
a
n
g
Typ
o
fix
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-08-24
Ed
w
a
r
d
Z
.
Y
an
g
D
o
n't a
d
d nofollow for ma
t
ching hosts,
gener
a
l
i
z
e
this
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-08-24
Edward Z
.
Y
a
ng
Update INST
A
LL to avoid
m
is
s
ing config snafu,
update
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-08-24
Edwar
d
Z
.
Yang
Do not dupl
i
c
a
t
e
nofollow a
t
tribute in transform
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-04-19
Edward Z
.
Yang
Explicitly
initialize anon
M
o
d
u
le
t
o null
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-04-10
Edward
Z
.
Yang
URI
.
M
u
nge munges htt
p
s to h
t
tp UR
I
s
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-04-10
E
d
w
ard Z
.
Yang
Color keywords now case-in
s
ensitive
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-27
E
dw
a
r
d
Z
.
Ya
n
g
R
elease 4
.
3
.
0
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-27
Edward Z
.
Y
a
ng
F
i
x C
S
S URL inn
e
rHTML/cssText es
c
a
p
i
ng bug
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-27
Edward
Z
.
Yan
g
Protect against fo
n
t famil
y
innerHTML/cssText attacks
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-27
Edward Z
.
Yang
Fix I
n
ternet Explore
r
inner
H
TML bug
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-24
Edward Z
.
Yang
I
m
p
l
ement
C
S
S
.
AllowedFonts
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-22
Edward Z
.
Yan
g
Don't auto
c
lose if no
p
are
n
ts support the
t
a
g
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-21
Edward Z
.
Y
ang
Safety up
d
ate for nested
ul test
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-17
Ed
w
ard
Z
.
Yang
Fix E_NOTICE from ind
e
xing i
n
to empty s
t
ring
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-02-27
E
dward Z
.
Y
a
n
g
F
i
x missi
n
g n
u
meric ent
i
tie
s
(
shows up wh
e
n Dir
e
ctLexing)
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-01-25
Ed
w
ard Z
.
Yang
Dramatically rewr
i
t
e null host URI handling
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-01-22
Edward Z
.
Y
a
ng
Fix embedding fla
s
h o
n
non-IE browsers
a
n
d
allow more
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-01-14
Edward Z
.
Yang
Bu
m
p
vers
i
o
n
nu
m
ber for Cache
.
SerializerPe
r
m
i
ssions
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-01-13
Edward Z
.
Yan
g
Check that
argv
is set before operating on
i
t
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-12-31
Edward Z
.
Yang
F
i
x ba
d
i
nteraction betwee
n
bootstrap autoload
e
r and
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-12-30
Edw
a
r
d
Z
.
Y
a
ng
Fix
t
wo bu
g
s
with
caching of cu
s
tomized raw de
f
in
i
tions
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-11-21
Edwa
r
d
Z
.
Ya
n
g
Update
P
HPT ins
t
ruction
s
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-11-12
Edward Z
.
Yang
Add initial im
p
lement
a
tion of CS
S
.
Trusted
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-11-12
Edward Z
.
Yang
A
d
d sani
t
y check against ze1_com
p
atibility
_
mode
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-11-12
Ed
w
ard Z
.
Ya
n
g
Fix incorrect PEARSax3
t
est a
s
sert
i
on
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-10-29
Edwar
d
Z
.
Yang
Check if schema
.
ser was corrup
t
ed
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-10-28
E
d
ward Z
.
Y
ang
Fix rem
o
val of id with
D
irec
t
Lex b
y
preser
v
ing armor
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-09-28
E
dw
a
rd Z
.
Yang
Escape
C
DATA before handling condit
i
on
a
l
c
omments
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-09-28
Edward Z
.
Y
ang
Implement HT
M
L
.
Nofollow for external
l
i
nks
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-09-28
Edw
a
rd Z
.
Yang
Make IE conditional commen
t
matc
h
ing un
g
reedy
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-09-15
Edwar
d
Z
.
Yang
Release 4
.
2
.
0
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-09-15
Edward Z
.
Yang
Re
n
ame newline normalization
d
irective to s
o
m
ething
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-09-15
Ed
w
ard Z
.
Yang
Shift t
o
4
.
2
.
0
r
elease
c
ycle
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-09-09
Edward Z
.
Ya
n
g
Add sup
p
ort for file:// URI scheme
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-09-09
Edw
a
rd Z
.
Yang
Update TOD
O
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-09-09
Edwa
r
d
Z
.
Yan
g
Im
p
lemen
t
HTML
.
FlashA
l
lowF
u
llScreen
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-09-04
Edward Z
.
Yang
Add
%
C
SS
.
For
b
i
d
denPr
o
pert
i
es d
i
rective
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-09-04
E
d
war
d
Z
.
Yang
Add
d
o
cumentation ab
o
ut con
f
igurat
i
on di
r
e
c
t
iv
e
types
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-09-04
Edwa
r
d Z
.
Ya
n
g
Reword
documentation to
be cl
e
arer,
a
nd give
w
arning
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-08-27
Edward Z
.
Yang
Fix
M
ac
S
now Leopard APC bug
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-06-30
Edwar
d
Z
.
Yang
Tigh
t
e
n
u
p ignore
s
pec
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-06-30
Edw
a
rd
Z
.
Yan
g
Actuall
y
make U
R
I
.
DisableResou
r
ces do somet
h
ing
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-06-21
E
d
w
ard Z
.
Yang
A
d
ded %Cor
e
.
R
emoveProcessingIns
t
ruct
i
ons
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-06-18
Edward Z
.
Yang
Fi
x
impro
p
er handling
o
f
I
E conditional comme
n
t
s
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2010-06-01
Edward
Z
.
Y
a
n
g
Release 4
.
1
.
1
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
next