This addresses #535. Rather than rendering attributes if they contain a link, look for things that look like HTML tags instead.
I considered the code-injection potential of this, but I don't think it's any better or worse than the current code, as anything with http:// in it would be rendered currently.
This addresses #535. Rather than rendering attributes if they contain a link, look for things that look like HTML tags instead.
I considered the code-injection potential of this, but I don't think it's any better or worse than the current code, as anything with
http://
in it would be rendered currently.