]> git.wh0rd.org - tt-rss.git/commitdiff
Merge branch 'patch-strip-harmful-tags' into 'master'
authorAndrew Dolgov <cthulhoo@gmail.com>
Sun, 7 Aug 2016 19:21:45 +0000 (22:21 +0300)
committerAndrew Dolgov <cthulhoo@gmail.com>
Sun, 7 Aug 2016 19:21:45 +0000 (22:21 +0300)
Remove href attribute if it executes JavaScript.

Security update to prevent A tags with a `javascript:` href from actually executing the JavaScript.

See merge request !31


Trivial merge