W3C home > Mailing lists > Public > www-style@w3.org > August 2006

Re: Security Markup

From: Kornel Lesinski <kornel@osiolki.net>
Date: Mon, 21 Aug 2006 10:32:36 +0100
To: www-style@w3.org
Message-ID: <op.temngmou4suneb@idlaptop02.ideadesigners.local>


> <div id="comment123"  nocode="true">

I'm afraid that this would be too easy to bypass:

<div id="comment123"  nocode="true">
	$comment
</div>

$comment = '</div><script ...';

-- 
regards, Kornel Lesiński
Received on Monday, 21 August 2006 09:27:11 GMT

This archive was generated by hypermail 2.2.0+W3C-0.50 : Monday, 27 April 2009 13:54:46 GMT