Another one just for the record. This was a SERIOUS ISSUE. All text field submissions across the board were getting SQL sanitized but NOT HTML SANITIZED. Way to go, team. I implemented this everywhere it needed to be implemented and for the moment, reviews have a partial HTML implementation -- the Vault desanitizes tags like <b> and <s>. Something to consider might be implementing BBCode but I'd rather leave it the way it is, myself.
Report ID | 380 | Title | Text field HTML filtering and limited inline HTML support |
Product | Archived Vault Bugs | Status | Fixed (Severity 5 - Critical) |
Page 1 of 1
Report ID #380: Text field HTML filtering and limited inline HTML support
#1 Lachesis
Posted 18 September 2011 - 08:24 AM
"Let's just say I'm a GOOD hacker, AND virus maker. I'm sure you wouldn't like to pay for another PC would you?"
xx̊y (OST) - HELLQUEST (OST) - Zeux I: Labyrinth of Zeux (OST) (DOS OST)
w/ Lancer-X and/or asgromo: Pandora's Gate - Thanatos Insignia - no True(n) - For Elise OST
MegaZeux: Online Help File - Keycode Guide - Joystick Guide - Official GIT Repository
xx̊y (OST) - HELLQUEST (OST) - Zeux I: Labyrinth of Zeux (OST) (DOS OST)
w/ Lancer-X and/or asgromo: Pandora's Gate - Thanatos Insignia - no True(n) - For Elise OST
MegaZeux: Online Help File - Keycode Guide - Joystick Guide - Official GIT Repository
Page 1 of 1
Replies (1 - 1)
Page 1 of 1
0 User(s) are reading this issue
0 Guests and 0 Anonymous Users
Powered by IP.Tracker 1.3.2 © 2025 IPS, Inc.