diff UPGRADE.txt @ 556:d5cb5c200045

The HTML sanitizer now strips any CSS comments in style attributes, which could previously be used to hide malicious property values.
author cmlenz
date Tue, 03 Jul 2007 20:29:07 +0000
parents 0ed55216e8f2
children 7145e4eba2ec
line wrap: on
line diff
Copyright (C) 2012-2017 Edgewall Software