repo.or.cz
/
htmlpurifier.git
/
search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
log
|
graphiclog1
|
graphiclog2
|
commit
|
commitdiff
|
tree
|
refs
|
edit
|
fork
first
·
prev
·
next
Add HTML.Noopener to add a noopener rel to every external link
2017-02-04
Bastian
Hofmann
Add HTML
.
Noopener to add a noopener re
l
to every ext
e
r
n
al
.
.
.
commit
|
commitdiff
|
tree
2015-08-03
Edward
Z
.
Yang
Merge pull request
#
6
0
from
s
ylfabre
/
patch-1
commit
|
commitdiff
|
tree
2013-10-28
Edw
a
rd
Z
.
Ya
n
g
Fix infinite loop in Lexer
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-10-22
Edward Z
.
Y
a
ng
Fix < PHP
5
.
4
c
om
p
atibili
t
y
break
.
Than
k
s
GromN
a
N for
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-10-21
Edward Z
.
Yang
R
e
write
Fi
x
Nesting implement
a
tion
t
o
b
e
t
ree-based
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-10-20
Edwa
r
d
Z
.
Yang
Add
c
onversi
o
n function
s
for ou
r
own t
r
ee forma
t
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-10-17
Edward Z
.
Y
ang
Mak
e
the Token
c
las
s
abstr
a
ct
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-10-17
E
d
ward Z
.
Yang
Remove some
u
n
n
e
cessary pass-by-refere
n
c
e
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-10-17
Edward Z
.
Yang
Remove PHP 4 compatibil
i
ty hack
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-10-13
Edward Z
.
Y
an
g
U
s
e a Z
i
pper to process MakeW
e
ll
F
ormed,
remo
v
ing quadratic
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-10-13
E
d
ward Z
.
Y
a
n
g
Pro
p
e
r
ly h
a
ndl
e
co
n
text varia
b
le
s
that a
r
e NULL
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-10-13
Edward Z
.
Yang
I
mplementat
i
on
of a Zippe
r
, for efficient splic
e
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-10-13
Edward Z
.
Yang
I
m
prov
e
gitignore
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-09-17
Edwar
d
Z
.
Yan
g
Fix
quadrat
i
c behav
i
o
r in
D
OMLex
d
ue to array_shif
t
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-09-14
Edward Z
.
Yang
Properly use HMAC for se
c
ure munging
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-08-18
Marcus Bo
i
n
ton
PSR-2 ref
o
rm
a
tting PHPDoc c
o
rrecti
o
n
s
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-07-27
E
dw
a
r
d
Z
.
Yan
g
Ti
g
hten up invariants
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-07-27
Edward
Z
.
Ya
n
g
E
xplicitly
s
pecif
y
decorator na
m
e
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-07-27
Edward Z
.
Y
a
ng
New dir
e
cti
v
e %C
o
r
e
.
AllowHostna
m
eUnder
s
c
o
re
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-07-18
E
dwar
d
Z
.
Yang
A
dd n
o
te fall
t
hrough is intention
a
l
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-07-17
Marc
u
s
Boi
n
ton
Fi
x
var
n
ame conflict in loadArray
commit
|
commitdiff
|
tree
2013-07-17
Synchro
A bun
c
h of
PHPdoc and php codesniffer corre
c
tions
.
.
.
commit
|
commitdiff
|
tree
2013-06-06
Edward Z
.
Yang
M
ake
l
ist nesting test more
sensiti
v
e
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-05-22
Edward Z
.
Yang
Use
i
n
fo_parent_def to
get paren
t
in
f
o
r
mation, s
i
nce
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-05-21
Edward Z
.
Yang
Ignore commas and nbsps fo
r
li
n
k
i
f
ication
.
Thanks nAS
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-05-18
Edward Z
.
Yang
Doc fix
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-04-16
Edward Z
.
Y
a
ng
Make
URI parsing
algorithm more strict
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-02-21
E
d
ward
Z
.
Y
a
ng
Fix NEWS entry
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-02-18
Edward Z
.
Yang
Rele
a
se 4
.
5
.
0
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2013-02-17
Edward Z
.
Yang
Add %
C
ore
.
D
i
sabl
e
Excludes directive
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-12-21
M
i
c
hael Tibben
Add required
constant for compos
e
r autoloadi
n
g
commit
|
commitdiff
|
tree
2012-10-27
Edward
Z
.
Yang
U
s
e
SHA-
1
i
n
ste
a
d
o
f
MD5
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-10-27
E
dward Z
.
Yang
Blacklist m
o
r
e tags from R
e
moveEmpty
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-10-27
E
dward Z
.
Yang
Cleanup
a
fter data
valid
a
tion
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-10-27
Edward Z
.
Yang
Do checks
a
gainst ic
o
nvAvailable because PHP 5
.
4
h
as
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-10-11
Ed
w
a
rd Z
.
Ya
n
g
Com
m
e
n
t for
b
u
g that n
e
eds to get
f
i
xed
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-10-11
E
d
ward Z
.
Yan
g
C
SS
pr
o
perties
p
a
ge-break-*
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-09-16
Rob Lo
a
c
h
Autoloading sup
p
ort f
o
r C
o
mpo
s
er
commit
|
commitdiff
|
tree
2012-07-30
Edw
a
rd Z
.
Yang
Fix bug with non-lower case
color na
m
es i
n
H
T
ML
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-07-27
Edward Z
.
Yang
Permit underscores in font-fami
l
ies
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-06-16
Edward Z
.
Yang
M
o
re suppor
t
for white-
s
pace
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-06-02
Edward Z
.
Yan
g
Don't lower-case
c
omp
o
nen
t
s of bac
k
g
r
ound
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-05-26
Edward Z
.
Yang
Support for inline
-
block
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-05-15
Edward Z
.
Yang
F
i
x in AttrTransform_Nofollo
w
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-05-02
Edwar
d
Z
.
Y
a
ng
U
se prepend for a
u
toload
i
n
g on PHP 5
.
3+
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-04-27
Edward
Z
.
Yan
g
Support fo
r
s
afe externa
l
scripts via
e
xplici
t
w
h
itelist
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-03-17
Edward Z
.
Yang
Fix pro
b
lem where stacked
A
ttrTransforms
c
lob
b
er each
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-03-16
Benjamin Steininger
Add composer
.
j
son fi
l
e
for easy install
v
ia composer
.
commit
|
commitdiff
|
tree
2012-03-02
E
d
ward Z
.
Yan
g
A
ct
u
ally make URI
.
Disab
l
eReso
u
rc
e
s do something
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-02-18
Ed
w
ard Z
.
Ya
n
g
Bugfix: _blank not b
l
a
n
k
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-25
Edward Z
.
Yang
Update N
E
WS
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-19
Edward Z
.
Y
a
ng
Release 4
.
4
.
0
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-18
Edward Z
.
Yang
Make all o
f
the tes
t
s w
o
rk on all
PHP versions
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-18
Ed
w
ard Z
.
Yan
g
Av
o
id d
o
i
ng
stupidly cleve
r
r
e
fl
e
ction tricks
t
hat
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-18
Edward Z
.
Yang
Mod
e
rni
z
e some
of the t
e
sting facilitie
s
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-17
E
d
ward
Z
.
Y
ang
Ti
g
hter CSS selector validation
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-06
E
dwar
d
Z
.
Yang
Remark ab
o
ut b
y
passing
h
ost lis
t
with punyc
o
d
e
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-06
Edward
Z
.
Yang
Op
t
ional support
for IDNAs with PE
A
R Net
_
IDNA2
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2012-01-03
Edward Z
.
Y
a
ng
Remove PEARSax3 lexer
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-30
Edward Z
.
Y
ang
Make forms work fo
r
t
ra
n
s
i
tional docty
p
es
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-27
Edward
Z
.
Ya
n
g
Remove i
n
scrutab
l
e TODO, op
t
ionalize another
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-27
Edward Z
.
Yang
Add not
e
about superseding module
s
in TODO
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-26
Edward Z
.
Y
a
ng
Bump m
i
nor version n
u
mber to
4
.
4
.
0
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-26
Edwa
r
d Z
.
Yan
g
Add tes
t
fo
r
inval
i
d Sa
f
e
I
fra
m
e usage
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-26
Brad
l
ey M
.
Fro
e
hle
Imp
l
eme
n
t Iframe
m
odule, and provi
d
e %HTML
.
SafeIframe
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-26
Edward
Z
.
Yang
Add more att
r
ib
u
tions
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-26
Edward
Z
.
Ya
n
g
I
mplement %HTML
.
A
l
lo
w
edComments and %HTML
.
All
o
wedCo
m
mentsRegexp
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-26
Edward Z
.
Yan
g
F
ix b
r
oken
table content model, easily
s
e
e
n in XHTM
L
1
.
1
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-26
Edw
a
rd Z
.
Yan
g
Properly handl
e
nested sublist
s
by fo
l
d
i
n
g int
o
prev
i
ous
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-26
Edwa
r
d Z
.
Yang
Im
p
l
ement
%
HT
M
L
.
T
a
rgetBlank
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-25
Ed
w
ard Z
.
Ya
n
g
Add i
s
Ben
i
gn and
getDefaultScheme method
s
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-25
Ed
w
ard Z
.
Yang
Add a little bi
t
of documentation about con
t
e
xts for
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-25
Edward Z
.
Yang
Core
.
EscapeNo
n
ASCIIChara
c
ters now always works, even
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-25
E
dward Z
.
Yang
Add support for sco
p
e at
t
ri
b
ute on td and th
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-25
Edward Z
.
Yang
Add one more
t
es
t
for S
P
L autoload defau
l
ts
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-25
Ed
w
a
r
d Z
.
Y
ang
Fix ic
o
nv
t
runc
a
tion bug
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-18
E
d
w
a
rd
Z
.
Ya
n
g
Remove spurious
abstract definition; PHP 5
.
4 do
e
sn
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-12-18
Edward Z
.
Y
ang
Don't unset p
a
rser
v
ariable
;
plays poorly
w
i
t
h serialize
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-08-24
E
d
ward
Z
.
Ya
n
g
Typofix
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-08-24
E
dward Z
.
Y
ang
D
on't add n
o
f
ol
l
ow for match
i
ng hosts, generalize th
i
s
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-08-24
E
d
ward Z
.
Yang
Upda
t
e INSTALL to
avoid
miss
i
ng conf
i
g snafu, update
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-08-24
Edwar
d
Z
.
Yan
g
Do not duplicate nofollow att
r
ib
u
t
e
in tra
n
sform
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-04-19
Edward Z
.
Yang
Expl
i
ci
t
ly ini
t
ializ
e
anonModule to null
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-04-10
Edward
Z
.
Yang
URI
.
Mu
n
ge mu
n
ges https
t
o http URIs
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-04-10
Edw
a
rd Z
.
Yang
Color keywords n
o
w case-
i
ns
e
nsitive
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-27
Edward Z
.
Yang
Rele
a
se 4
.
3
.
0
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-27
Edward Z
.
Y
a
ng
Fix CSS
URL innerHTML/cssText escaping bug
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-27
Edward Z
.
Y
ang
Pro
t
ect against font family innerHTML/
c
s
sText
attacks
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-27
Edward Z
.
Yang
F
i
x
I
n
t
e
r
net Expl
o
r
er innerHTML bug
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-24
Edward Z
.
Yang
Impl
e
m
ent CSS
.
Al
l
owedFo
n
ts
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-22
E
d
ward Z
.
Yan
g
Don
'
t autoclose if
no paren
t
s
su
p
port the tag
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-21
Edward Z
.
Yang
S
a
f
e
ty updat
e
for ne
s
ted ul tes
t
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-03-17
E
d
wa
r
d Z
.
Y
a
ng
Fix
E
_NOTICE from in
d
exin
g
into empty
s
tring
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-02-27
Edward Z
.
Yang
Fix missing numeric
entities (show
s
up when DirectLe
x
ing)
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-01-25
Edw
a
r
d
Z
.
Yang
Dramatically rewrite null host URI
h
a
nd
l
in
g
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-01-22
Edward Z
.
Y
a
ng
Fix
embeddi
n
g
f
lash on
non-
I
E
b
rowse
r
s
and allow more
.
.
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-01-19
M
axim Krizhanovsk
y
I
t
er
a
tive tra
v
e
r
s
al o
f
DOM
.
commit
|
commitdiff
|
tree
2011-01-14
Edward Z
.
Ya
n
g
Bump
v
ersion
number for Cache
.
S
e
rializer
P
ermissi
o
ns
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
2011-01-13
Petr Skoda
A
dd new Cache
.
SerializerPermissions opti
o
n
.
commit
|
commitdiff
|
tree
2011-01-13
Edward Z
.
Yang
Check that arg
v
i
s set before oper
a
t
ing on
i
t
.
Signed-off-by: Edward Z. Yang <
ezyang@mit.edu
>
commit
|
commitdiff
|
tree
next