Closed qq99 closed 10 years ago
https://github.com/qq99/echoplexus/blob/master/src/client/utility.js.coffee#L22
Elements with attributes with content javascript:somefunc() probably still get through the HTMLSanitizer, so this could be an issue with rogue webhooks
javascript:somefunc()
https://github.com/qq99/echoplexus/blob/master/src/client/utility.js.coffee#L22
Elements with attributes with content
javascript:somefunc()
probably still get through the HTMLSanitizer, so this could be an issue with rogue webhooks