diff options
author | Josh Triplett <josh@freedesktop.org> | 2008-02-10 13:23:28 -0800 |
---|---|---|
committer | Josh Triplett <josh@freedesktop.org> | 2008-02-10 13:23:28 -0800 |
commit | a7be7bdf56b60a08a7ae23a17e20d2bad4cc2971 (patch) | |
tree | 27ea5406e9d88d3c2e80aa658b6108f06e1b165b /IkiWiki/Plugin | |
parent | 71ccaf07510319a1366cd459295d63a6320c50b0 (diff) | |
download | ikiwiki-a7be7bdf56b60a08a7ae23a17e20d2bad4cc2971.tar ikiwiki-a7be7bdf56b60a08a7ae23a17e20d2bad4cc2971.tar.gz |
Do not allow the about: URI scheme
Some browsers interpret about: URIs like a limited version of data:
URIs. In particular, some versions of Internet Explorer interpret
arbitrary HTML content in about: URIs.
Diffstat (limited to 'IkiWiki/Plugin')
-rw-r--r-- | IkiWiki/Plugin/htmlscrubber.pm | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/IkiWiki/Plugin/htmlscrubber.pm b/IkiWiki/Plugin/htmlscrubber.pm index 634674b9c..e02a8591e 100644 --- a/IkiWiki/Plugin/htmlscrubber.pm +++ b/IkiWiki/Plugin/htmlscrubber.pm @@ -30,7 +30,7 @@ sub scrubber { #{{{ "sip", "sips", "snmp", "tel", "urn", "wais", "xmpp", "z39.50r", "z39.50s", # Selected unofficial schemes - "about", "aim", "callto", "cvs", "ed2k", "feed", "fish", "gg", + "aim", "callto", "cvs", "ed2k", "feed", "fish", "gg", "irc", "ircs", "lastfm", "ldaps", "magnet", "mms", "msnim", "notes", "rsync", "secondlife", "skype", "ssh", "sftp", "sms", "steam", "webcal", "ymsgr", |