diff ChangeLog @ 557:c0d8dc05b37c stable-0.4.x

Ported [667] to 0.4.x branch.
author cmlenz
date Tue, 03 Jul 2007 20:30:28 +0000
parents d8ccbef91504
children e2f9fe115441
line wrap: on
line diff
--- a/ChangeLog
+++ b/ChangeLog
@@ -11,6 +11,8 @@
    it is not available for use through configuration files.
  * The I18n filter now extracts messages from gettext functions even inside
    ignored tags (ticket #132).
+ * The HTML sanitizer now strips any CSS comments in style attributes, which
+   could previously be used to hide malicious property values.
 
 
 Version 0.4.2
Copyright (C) 2012-2017 Edgewall Software