dqw / owaspantisamy

Automatically exported from code.google.com/p/owaspantisamy
0 stars 0 forks source link

onsiteURL does not allow colon character #155

Open GoogleCodeExporter opened 8 years ago

GoogleCodeExporter commented 8 years ago
In the default antisamy.xml, the regex for onsiteURL does not allow a colon 
character.

This should be allowed, as long as the href will not parse as absolute URI (as 
per RFC 3986). This means it's ok unless it follows a path separator.

Original issue reported on code.google.com by julian.r...@googlemail.com on 8 Feb 2013 at 4:23