W3C home > Mailing lists > Public > www-style@w3.org > August 2006

Re: Security Markup

From: Kornel Lesinski <kornel@osiolki.net>
Date: Mon, 21 Aug 2006 10:32:36 +0100
To: www-style@w3.org
Message-ID: <op.temngmou4suneb@idlaptop02.ideadesigners.local>


> <div id="comment123"  nocode="true">

I'm afraid that this would be too easy to bypass:

<div id="comment123"  nocode="true">
	$comment
</div>

$comment = '</div><script ...';

-- 
regards, Kornel Lesiński
Received on Monday, 21 August 2006 09:27:11 UTC

This archive was generated by hypermail 2.3.1 : Monday, 2 May 2016 14:27:25 UTC