Page MenuHomeSolus

Update python-bleach to 2.1.3
ClosedPublic

Authored by EP01 on Mar 6 2018, 12:11 AM.
Tags
  • Restricted Project
Referenced Files
F10875851: D2448.id6039.diff
Jun 20 2023, 7:50 AM
F10837430: D2448.id5917.diff
Jun 9 2023, 2:56 AM
F10829320: D2448.id5917.diff
Jun 4 2023, 11:47 AM
F10809985: D2448.id6039.diff
May 30 2023, 4:18 PM
F10743277: D2448.id6039.diff
May 14 2023, 7:25 PM
F10731701: D2448.diff
May 11 2023, 7:54 AM
F10728270: D2448.diff
May 10 2023, 5:32 AM
F10723310: D2448.id.diff
May 7 2023, 3:05 AM
Subscribers

Details

Summary
  • Attributes that have URI values weren't properly sanitized if the values contained character entities. Using character entities, it was possible to construct a URI value with a scheme that was not allowed that would slide through unsanitized.
  • Fixed some other edge cases for attribute URI value sanitizing and improved testing of this code.
Test Plan

Tested with spyder and spyder3.

Diff Detail

Repository
R3708 python-bleach
Lint
Lint Not Applicable
Unit
Tests Not Applicable

Event Timeline

EP01 requested review of this revision.Mar 6 2018, 12:11 AM
This revision is now accepted and ready to land.Mar 11 2018, 1:36 PM
This revision was automatically updated to reflect the committed changes.