diff options
Diffstat (limited to 'doc/plugins/htmlscrubber.mdwn')
-rw-r--r-- | doc/plugins/htmlscrubber.mdwn | 6 |
1 files changed, 4 insertions, 2 deletions
diff --git a/doc/plugins/htmlscrubber.mdwn b/doc/plugins/htmlscrubber.mdwn index 770031650..252fcd5d2 100644 --- a/doc/plugins/htmlscrubber.mdwn +++ b/doc/plugins/htmlscrubber.mdwn @@ -1,3 +1,7 @@ +[[template id=plugin name=htmlscrubber core=1 included=1 +author="""[[Joey]]"""]] +[[tag type/html type/core]] + This plugin is enabled by default. It sanitizes the html on pages it renders to avoid XSS attacks and the like. @@ -28,5 +32,3 @@ plugin is active: * <span style="background: url(javascript:window.location='http://example.org/')">test</span> * <span style="any: expression(window.location='http://example.org/')">test</span> * <span style="any: expression(window.location='http://example.org/')">test</span> - -[[tag type/html type/core]] |