repo.or.cz
/
htmlpurifier.git
/
search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
log
|
graphiclog1
|
graphiclog2
|
commit
|
commitdiff
|
tree
|
refs
|
edit
|
fork
first
·
prev
·
next
Properly use HMAC for secure munging.
2013-09-14
E
d
ward Z
.
Yang
Properly use HMAC for s
e
cu
r
e munging
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-07-27
Edward Z
.
Yang
Tighte
n
up invarian
t
s
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-07-27
E
d
ward Z
.
Yang
E
x
pli
c
i
t
l
y specify deco
r
a
tor nam
e
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-07-27
Edwa
r
d Z
.
Yang
New directive %
C
ore
.
AllowHostna
m
eUnde
r
score
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-07-18
Edward Z
.
Y
a
ng
Add note fall t
h
r
o
ugh is
i
nten
t
ional
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-06-06
Ed
w
ar
d
Z
.
Yang
Make li
s
t nesting test
more sensitive
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-05-22
Ed
w
ard Z
.
Yan
g
Use i
n
fo_parent_d
e
f t
o
get p
a
rent
i
nfor
m
ation, since
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-05-21
Edw
a
rd Z
.
Yang
Ignore comm
a
s and
nbsps for
linkifi
c
ation
.
Tha
n
ks nAS
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-05-18
E
d
ward
Z
.
Yang
Doc fi
x
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-04-16
Edw
a
rd Z
.
Ya
n
g
M
ak
e
U
R
I parsing algori
t
h
m
more strict
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-02-21
Edward Z
.
Yang
Fix N
E
WS entry
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-02-18
Edward Z
.
Yang
R
e
lease 4
.
5
.
0
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2013-02-17
Edward Z
.
Yang
Add
%
Core
.
D
i
sableE
x
cludes
d
irective
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-10-27
Edwa
r
d Z
.
Yang
U
s
e SHA-1 inste
a
d
of
MD5
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-10-27
Edward Z
.
Ya
n
g
B
l
a
c
k
l
i
st more tags fro
m
RemoveEmpty
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-10-27
E
d
ward
Z
.
Yang
Clean
u
p
aft
e
r
d
ata validati
o
n
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-10-27
E
dw
a
rd Z
.
Yang
D
o
c
h
ecks against iconvAvailable bec
a
use P
H
P 5
.
4
h
as
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-10-11
Edward Z
.
Yang
Comm
e
nt for bug that needs
to
g
et fixed
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-10-11
Edward Z
.
Yang
CSS propert
i
es p
a
g
e
-break
-
*
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-07-30
Edward Z
.
Yang
Fix bu
g
wi
t
h non-lower case color
names in HTML
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-07-27
Edw
a
rd Z
.
Y
ang
P
er
m
i
t
underscores in font-f
a
milies
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-06-16
Edward
Z
.
Y
a
ng
M
o
re support f
o
r white-space
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-06-02
E
dwa
r
d
Z
.
Yang
D
on't lower-cas
e
components
o
f background
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-05-26
Edward
Z
.
Yang
Su
p
po
r
t for i
n
line-block
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-05-15
E
dward
Z
.
Y
ang
Fix in
A
ttr
T
ransform_Nofollo
w
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-05-02
Edward Z
.
Yang
Use prepen
d
for aut
o
loading on PHP 5
.
3+
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-04-27
Edward Z
.
Y
a
ng
Support for sa
f
e extern
a
l scripts vi
a
explicit w
h
itel
i
st
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-03-17
Ed
w
ard Z
.
Yang
Fix probl
e
m
where stacked A
t
trTransforms clobber eac
h
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-03-02
Edward Z
.
Yang
Ac
t
ually make URI
.
DisableResources do s
o
me
t
hin
g
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-02-18
Edward Z
.
Yang
Bug
f
ix: _blank not blank
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-25
Ed
w
ard
Z
.
Yang
Update
N
EWS
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-19
Edward Z
.
Yang
Re
l
ea
s
e 4
.
4
.
0
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-18
Edward Z
.
Y
ang
Make all of
t
he tests w
o
rk on all PHP versions
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-18
Edward Z
.
Yang
Avoid doin
g
stupid
l
y c
l
ev
e
r reflection tr
i
c
k
s
that
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-18
Edward Z
.
Yang
Modernize
some of the
t
esting facilities
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-17
E
d
ward
Z
.
Yang
Tig
h
ter CSS
s
electo
r
v
a
lidation
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-06
Edwar
d
Z
.
Ya
n
g
Remark
abou
t
bypa
s
sing host
list
with
punycod
e
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-06
E
d
w
a
rd
Z
.
Y
ang
Optional support for
I
D
NAs with PEA
R
Net_IDNA2
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2012-01-03
Edw
a
rd
Z
.
Yang
Remov
e
PEARSax3 lexer
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-30
Edward Z
.
Yang
M
ake forms work f
o
r trans
i
tional doctypes
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-27
Edward Z
.
Yang
R
e
move i
n
s
c
rutabl
e
TODO, o
p
tionalize another
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-27
Edward Z
.
Yang
Add no
t
e a
b
out sup
e
rseding
modules i
n
T
O
DO
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Ed
w
ard Z
.
Yan
g
B
um
p
minor ver
s
ion number to 4
.
4
.
0
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Edward Z
.
Yang
A
d
d te
s
t for
i
nvalid SafeIframe us
a
ge
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
E
d
ward
Z
.
Yang
Add more at
t
ributions
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Ed
w
ard
Z
.
Yang
I
mp
l
emen
t
%HTML
.
AllowedComments and
%HTML
.
AllowedC
o
mmentsRegexp
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Edward Z
.
Yang
Fi
x
brok
e
n tabl
e
c
ontent model, easi
l
y seen in XHT
M
L1
.
1
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Edward Z
.
Yang
Pr
o
perly handle nested s
u
b
l
ists by folding in
t
o pre
v
ious
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-26
Ed
w
a
r
d Z
.
Y
a
ng
I
mplem
e
nt %HTML
.
T
arg
e
tBla
n
k
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
Edward Z
.
Yang
Add isBeni
g
n and
getD
e
faultScheme metho
d
s
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
Edward Z
.
Yang
Add a litt
l
e bit of
d
ocumentatio
n
about
c
ontexts for
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
Edw
a
rd Z
.
Yang
Core
.
E
scapeNo
n
ASCIICharac
t
ers now al
w
ay
s
w
o
rks, even
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
Edward Z
.
Ya
n
g
Add support for scope att
r
ibut
e
on td and
t
h
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
Edward Z
.
Yang
Add one more test
f
or SPL aut
o
lo
a
d defaults
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-25
Edward Z
.
Yang
Fix iconv truncation bug
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-18
Edward Z
.
Yan
g
Re
m
ove spurious a
b
str
a
ct definition; PHP 5
.
4 doesn
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-12-18
Ed
w
ard Z
.
Yang
Don't unset parse
r
variable; p
l
a
y
s poorly with serialize
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-08-24
E
dward Z
.
Yan
g
Ty
p
ofix
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-08-24
Edwa
r
d Z
.
Ya
n
g
Don't add nofollow for matching hosts, generalize
t
his
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-08-24
Edwar
d
Z
.
Yang
Update
INSTALL to avoid missing conf
i
g sn
a
f
u
, update
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-08-24
Edwar
d
Z
.
Yang
D
o
n
ot duplicate nofollo
w
attribute in
transform
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-04-19
Edward Z
.
Yang
Expli
c
itly initialize an
o
n
Modul
e
to null
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-04-10
Edward Z
.
Yang
U
R
I
.
Munge munges
htt
p
s to
h
ttp
U
RIs
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-04-10
Edwar
d
Z
.
Yang
Co
l
or keywo
r
ds now case-in
s
e
n
sit
i
v
e
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-27
Edwa
r
d Z
.
Y
a
ng
Releas
e
4
.
3
.
0
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-27
Edward
Z
.
Yang
Fix CSS URL innerHTML/cs
s
Text es
c
aping
bug
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-27
Edwa
r
d Z
.
Yang
Protect against font f
a
mily inne
r
HTML/cssText a
t
tacks
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-27
E
dward
Z
.
Y
a
ng
Fix Internet Explo
r
er innerHTML b
u
g
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-24
Edward Z
.
Ya
n
g
I
mp
l
ement
CSS
.
All
o
wedFonts
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-22
E
dward Z
.
Y
a
ng
Don't autoclose if
no paren
t
s support the
t
ag
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-21
Edward Z
.
Y
ang
Safety up
d
ate for n
e
s
t
ed
u
l te
s
t
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-03-17
Edward Z
.
Yang
Fix E_N
O
TICE
f
ro
m
indexing into
e
m
p
t
y string
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-02-27
Edward Z
.
Y
a
n
g
Fix missing numeric en
t
itie
s
(shows up when Di
r
e
c
tLexing)
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-01-25
Edwa
r
d
Z
.
Ya
n
g
Dr
a
m
ati
c
ally rewr
i
te null hos
t
URI handlin
g
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-01-22
Edward Z
.
Yang
Fix
e
mbedding flash on
n
on-IE
b
rowsers and allow more
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-01-14
Edward Z
.
Yang
Bump version nu
m
b
er for Cache
.
S
erializerPermiss
i
o
n
s
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2011-01-13
Edward Z
.
Y
ang
Che
c
k that arg
v
is set before operating
o
n it
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-12-31
Ed
w
ard Z
.
Yang
Fix
bad interac
t
ion be
t
ween bootstra
p
aut
o
loader and
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-12-30
Edwa
r
d
Z
.
Yang
Fix
t
wo bugs with cachin
g
of cus
t
omized
raw definitions
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-11-21
E
dwa
r
d
Z
.
Y
a
n
g
Update
P
H
P
T
instr
u
ctions
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-11-12
Edward Z
.
Yang
Add initial implementation of CSS
.
Trusted
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-11-12
Edward
Z
.
Yang
Add sanity c
h
eck against ze1_c
o
m
p
atibility_mode
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-11-12
E
d
ward Z
.
Yang
F
ix
incorr
e
ct
P
E
A
R
Sax3 test asse
r
t
i
on
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-10-29
E
d
ward Z
.
Yang
Check
i
f
schema
.
se
r
was co
r
rupted
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-10-28
Edward Z
.
Yang
F
ix removal of id
with
D
irec
t
Lex by preserving armo
r
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-28
Edward Z
.
Yang
E
s
cape CDATA befo
r
e handling cond
i
tional comments
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-28
E
dw
a
rd Z
.
Yang
Imple
m
ent
HTML
.
Nofollow for external links
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-28
E
d
ward Z
.
Y
ang
Make IE conditional comment matching ungree
d
y
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-15
Edward
Z
.
Yang
Relea
s
e 4
.
2
.
0
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-15
Edward
Z
.
Yang
Ren
a
me
n
ewline n
o
rmalization directi
v
e to somethi
n
g
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-15
E
dward Z
.
Yan
g
Shift
t
o 4
.
2
.
0 release cycle
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-09
Edw
a
rd Z
.
Yan
g
Add support for
f
ile:// URI scheme
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-09
Edward
Z
.
Yang
Update TODO
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-09
Edward
Z
.
Yang
Implement HTML
.
F
lashAllowFullSc
r
e
en
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-04
Edward
Z
.
Yang
Add %CSS
.
F
o
rb
i
ddenProperties direct
i
ve
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-04
Edward Z
.
Ya
n
g
Add document
a
t
i
on about co
n
fi
g
uration directiv
e
types
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-09-04
Edwar
d
Z
.
Yang
R
eword doc
u
me
n
tation to
be cle
a
rer, a
n
d give warni
n
g
.
.
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-08-27
Edward
Z
.
Yang
Fix Mac Snow L
e
opar
d
APC bug
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-06-30
Edward Z
.
Yang
Tighten up ignore spec
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
2010-06-30
E
d
w
ard Z
.
Yang
Actua
l
ly make URI
.
Disa
b
leR
e
s
o
u
r
c
es do something
.
Signed-off-by:
Edward Z. Yang
<ezyang@mit.edu>
commit
|
commitdiff
|
tree
next