- From: Michael Smith via cvs-syncmail <cvsmail@w3.org>
- Date: Mon, 05 Oct 2009 03:26:35 +0000
- To: public-html-commits@w3.org
Update of /sources/public/html5/spec In directory hutz:/tmp/cvs-serv17294 Modified Files: acknowledgements.html browsers.html comms.html dom.html editing.html embedded-content-0.html forms.html history.html iana-considerations.html index.html infrastructure.html interactive-elements.html introduction.html microdata.html named-character-references.html obsolete.html offline.html references.html semantics.html spec.html syntax.html tabular-data.html text-level-semantics.html the-canvas-element.html the-xhtml-syntax.html video.html Log Message: Disallow ` in unquoted attribute values. (whatwg r4076) [updated by splitter] Index: infrastructure.html =================================================================== RCS file: /sources/public/html5/spec/infrastructure.html,v retrieving revision 1.462 retrieving revision 1.463 diff -u -d -r1.462 -r1.463 --- infrastructure.html 5 Oct 2009 02:26:32 -0000 1.462 +++ infrastructure.html 5 Oct 2009 03:26:32 -0000 1.463 @@ -223,7 +223,7 @@ <a href="introduction.html">← 1 Introduction</a> – <a href="spec.html#contents">Table of contents</a> – <a href="dom.html">3 Semantics, structure, and APIs of HTML documents →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h2 id="infrastructure"><span class="secno">2 </span>Common infrastructure</h2><h3 id="terminology"><span class="secno">2.1 </span>Terminology</h3><p class="XXX annotation"><b>Status: </b><i>Working draft</i></p><p>This specification refers to both HTML and XML attributes and IDL Index: text-level-semantics.html =================================================================== RCS file: /sources/public/html5/spec/text-level-semantics.html,v retrieving revision 1.455 retrieving revision 1.456 diff -u -d -r1.455 -r1.456 --- text-level-semantics.html 5 Oct 2009 02:26:33 -0000 1.455 +++ text-level-semantics.html 5 Oct 2009 03:26:33 -0000 1.456 @@ -223,7 +223,7 @@ <a href="semantics.html">← 4 The elements of HTML</a> – <a href="spec.html#contents">Table of contents</a> – <a href="video.html">4.8.7 The video element →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h3 id="text-level-semantics"><span class="secno">4.6 </span>Text-level semantics</h3><h4 id="the-a-element"><span class="secno">4.6.1 </span>The <dfn><code>a</code></dfn> element</h4><p class="XXX annotation"><b>Status: </b><i>Last call for comments</i></p><dl class="element"><dt>Categories</dt> Index: the-canvas-element.html =================================================================== RCS file: /sources/public/html5/spec/the-canvas-element.html,v retrieving revision 1.324 retrieving revision 1.325 diff -u -d -r1.324 -r1.325 --- the-canvas-element.html 5 Oct 2009 02:26:33 -0000 1.324 +++ the-canvas-element.html 5 Oct 2009 03:26:33 -0000 1.325 @@ -223,7 +223,7 @@ <a href="video.html">← 4.8.7 The video element</a> – <a href="spec.html#contents">Table of contents</a> – <a href="tabular-data.html">4.9 Tabular data →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h4 id="the-canvas-element"><span class="secno">4.8.11 </span>The <dfn id="canvas"><code>canvas</code></dfn> element</h4><p class="XXX annotation"><b>Status: </b><i>Implemented and widely deployed. </i><span><a href="http://www.w3.org/html/wg/tracker/issues/74">ISSUE-74</a> (canvas-accessibility) blocks progress to Last Call</span></p><dl class="element"><dt>Categories</dt> Index: tabular-data.html =================================================================== RCS file: /sources/public/html5/spec/tabular-data.html,v retrieving revision 1.456 retrieving revision 1.457 diff -u -d -r1.456 -r1.457 --- tabular-data.html 5 Oct 2009 02:26:33 -0000 1.456 +++ tabular-data.html 5 Oct 2009 03:26:33 -0000 1.457 @@ -223,7 +223,7 @@ <a href="the-canvas-element.html">← 4.8.11 The canvas element</a> – <a href="spec.html#contents">Table of contents</a> – <a href="forms.html">4.10 Forms →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h3 id="tabular-data"><span class="secno">4.9 </span>Tabular data</h3><p class="XXX annotation"><b>Status: </b><i>Last call for comments. </i><span><a href="http://www.w3.org/html/wg/tracker/issues/32">ISSUE-32</a> (table-summary) blocks progress to Last Call</span></p><h4 id="the-table-element"><span class="secno">4.9.1 </span>The <dfn><code>table</code></dfn> element</h4><p class="XXX annotation"><b>Status: </b><i>Last call for comments</i></p><dl class="element"><dt>Categories</dt> Index: microdata.html =================================================================== RCS file: /sources/public/html5/spec/microdata.html,v retrieving revision 1.416 retrieving revision 1.417 diff -u -d -r1.416 -r1.417 --- microdata.html 5 Oct 2009 02:26:33 -0000 1.416 +++ microdata.html 5 Oct 2009 03:26:32 -0000 1.417 @@ -223,7 +223,7 @@ <a href="interactive-elements.html">← 4.11 Interactive elements</a> – <a href="spec.html#contents">Table of contents</a> – <a href="browsers.html">6 Web browsers →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h2 id="microdata"><span class="secno">5 </span><dfn>Microdata</dfn></h2><p class="XXX annotation"><b>Status: </b><i>First draft. </i><span><a href="http://www.w3.org/html/wg/tracker/issues/76">ISSUE-76</a> (Microdata/RDFa) blocks progress to Last Call</span></p><!-- v2 Index: embedded-content-0.html =================================================================== RCS file: /sources/public/html5/spec/embedded-content-0.html,v retrieving revision 1.452 retrieving revision 1.453 diff -u -d -r1.452 -r1.453 --- embedded-content-0.html 5 Oct 2009 02:26:32 -0000 1.452 +++ embedded-content-0.html 5 Oct 2009 03:26:32 -0000 1.453 @@ -223,7 +223,7 @@ <a href="dom.html">← 3 Semantics, structure, and APIs of HTML documents</a> – <a href="spec.html#contents">Table of contents</a> – <a href="semantics.html">4 The elements of HTML →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h6 id="embedded-content-0"><span class="secno">3.2.5.1.6 </span>Embedded content</h6><p><dfn id="embedded-content">Embedded content</dfn> is content that imports another Index: dom.html =================================================================== RCS file: /sources/public/html5/spec/dom.html,v retrieving revision 1.462 retrieving revision 1.463 diff -u -d -r1.462 -r1.463 --- dom.html 5 Oct 2009 02:26:32 -0000 1.462 +++ dom.html 5 Oct 2009 03:26:32 -0000 1.463 @@ -223,7 +223,7 @@ <a href="infrastructure.html">← 2 Common infrastructure</a> – <a href="spec.html#contents">Table of contents</a> – <a href="embedded-content-0.html">3.2.5.1.6 Embedded content →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h2 id="dom"><span class="secno">3 </span>Semantics, structure, and APIs of HTML documents</h2><p class="XXX annotation"><b>Status: </b><i>Working draft</i></p><h3 id="documents"><span class="secno">3.1 </span>Documents</h3><p>Every XML and HTML document in an HTML UA is represented by a Index: acknowledgements.html =================================================================== RCS file: /sources/public/html5/spec/acknowledgements.html,v retrieving revision 1.462 retrieving revision 1.463 diff -u -d -r1.462 -r1.463 --- acknowledgements.html 5 Oct 2009 02:26:32 -0000 1.462 +++ acknowledgements.html 5 Oct 2009 03:26:32 -0000 1.463 @@ -221,7 +221,7 @@ </div><nav> <a href="references.html">← References</a> – <a href="spec.html#contents">Table of contents</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h2 class="no-num" id="acknowledgements">Acknowledgements</h2><p class="XXX annotation"><b>Status: </b><i>Being edited right now</i></p><!-- ACKS --><p>Thanks to Index: history.html =================================================================== RCS file: /sources/public/html5/spec/history.html,v retrieving revision 1.456 retrieving revision 1.457 diff -u -d -r1.456 -r1.457 --- history.html 5 Oct 2009 02:26:32 -0000 1.456 +++ history.html 5 Oct 2009 03:26:32 -0000 1.457 @@ -223,7 +223,7 @@ <a href="offline.html">← 6.9 Offline Web applications</a> – <a href="spec.html#contents">Table of contents</a> – <a href="editing.html">7 User Interaction →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h3 id="history"><span class="secno">6.10 </span>Session history and navigation</h3><p class="XXX annotation"><b>Status: </b><i>Working draft</i></p><h4 id="the-session-history-of-browsing-contexts"><span class="secno">6.10.1 </span>The session history of browsing contexts</h4><p>The sequence of <code>Document</code>s in a <a href="browsers.html#browsing-context">browsing Index: forms.html =================================================================== RCS file: /sources/public/html5/spec/forms.html,v retrieving revision 1.456 retrieving revision 1.457 diff -u -d -r1.456 -r1.457 --- forms.html 5 Oct 2009 02:26:32 -0000 1.456 +++ forms.html 5 Oct 2009 03:26:32 -0000 1.457 @@ -223,7 +223,7 @@ <a href="tabular-data.html">← 4.9 Tabular data</a> – <a href="spec.html#contents">Table of contents</a> – <a href="interactive-elements.html">4.11 Interactive elements →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h3 id="forms"><span class="secno">4.10 </span>Forms</h3><p class="XXX annotation"><b>Status: </b><i>Working draft</i></p><p>Forms allow unscripted client-server interaction: given a form, a Index: interactive-elements.html =================================================================== RCS file: /sources/public/html5/spec/interactive-elements.html,v retrieving revision 1.456 retrieving revision 1.457 diff -u -d -r1.456 -r1.457 --- interactive-elements.html 5 Oct 2009 02:26:32 -0000 1.456 +++ interactive-elements.html 5 Oct 2009 03:26:32 -0000 1.457 @@ -223,7 +223,7 @@ <a href="forms.html">← 4.10 Forms</a> – <a href="spec.html#contents">Table of contents</a> – <a href="microdata.html">5 Microdata →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h3 id="interactive-elements"><span class="secno">4.11 </span>Interactive elements</h3><h4 id="the-details-element"><span class="secno">4.11.1 </span>The <dfn><code>details</code></dfn> element</h4><p class="XXX annotation"><b>Status: </b><i>Last call for comments</i></p><dl class="element"><dt>Categories</dt> Index: editing.html =================================================================== RCS file: /sources/public/html5/spec/editing.html,v retrieving revision 1.462 retrieving revision 1.463 diff -u -d -r1.462 -r1.463 --- editing.html 5 Oct 2009 02:26:32 -0000 1.462 +++ editing.html 5 Oct 2009 03:26:32 -0000 1.463 @@ -223,7 +223,7 @@ <a href="history.html">← 6.10 Session history and navigation</a> – <a href="spec.html#contents">Table of contents</a> – <a href="comms.html">8 Communication →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h2 id="editing"><span class="secno">7 </span><dfn>User Interaction</dfn></h2><p>This section describes various features that allow authors to Index: video.html =================================================================== RCS file: /sources/public/html5/spec/video.html,v retrieving revision 1.331 retrieving revision 1.332 diff -u -d -r1.331 -r1.332 --- video.html 5 Oct 2009 02:26:33 -0000 1.331 +++ video.html 5 Oct 2009 03:26:33 -0000 1.332 @@ -223,7 +223,7 @@ <a href="text-level-semantics.html">← 4.6 Text-level semantics</a> – <a href="spec.html#contents">Table of contents</a> – <a href="the-canvas-element.html">4.8.11 The canvas element →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h4 id="video"><span class="secno">4.8.7 </span>The <dfn><code>video</code></dfn> element</h4><p class="XXX annotation"><b>Status: </b><i>Last call for comments. </i><span><a href="http://www.w3.org/html/wg/tracker/issues/7">ISSUE-7</a> (video-codecs), <a href="http://www.w3.org/html/wg/tracker/issues/9">ISSUE-9</a> (video-synchronization) and <a href="http://www.w3.org/html/wg/tracker/issues/10">ISSUE-10</a> (video-smil) block progress to Last Call</span></p><dl class="element"><dt>Categories</dt> Index: browsers.html =================================================================== RCS file: /sources/public/html5/spec/browsers.html,v retrieving revision 1.462 retrieving revision 1.463 diff -u -d -r1.462 -r1.463 --- browsers.html 5 Oct 2009 02:26:32 -0000 1.462 +++ browsers.html 5 Oct 2009 03:26:32 -0000 1.463 @@ -223,7 +223,7 @@ <a href="microdata.html">← 5 Microdata</a> – <a href="spec.html#contents">Table of contents</a> – <a href="offline.html">6.9 Offline Web applications →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h2 id="browsers"><span class="secno">6 </span>Web browsers</h2><div class="impl"> Index: the-xhtml-syntax.html =================================================================== RCS file: /sources/public/html5/spec/the-xhtml-syntax.html,v retrieving revision 1.462 retrieving revision 1.463 diff -u -d -r1.462 -r1.463 --- the-xhtml-syntax.html 5 Oct 2009 02:26:33 -0000 1.462 +++ the-xhtml-syntax.html 5 Oct 2009 03:26:33 -0000 1.463 @@ -223,7 +223,7 @@ <a href="named-character-references.html">← 9.6 Named character references</a> – <a href="spec.html#contents">Table of contents</a> – <a href="obsolete.html">12 Obsolete features →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h2 id="the-xhtml-syntax"><span class="secno">10 </span><dfn id="xhtml">The XHTML syntax</dfn></h2><p class="note">This section only describes the rules for XML Index: offline.html =================================================================== RCS file: /sources/public/html5/spec/offline.html,v retrieving revision 1.457 retrieving revision 1.458 diff -u -d -r1.457 -r1.458 --- offline.html 5 Oct 2009 02:26:33 -0000 1.457 +++ offline.html 5 Oct 2009 03:26:32 -0000 1.458 @@ -223,7 +223,7 @@ <a href="browsers.html">← 6 Web browsers</a> – <a href="spec.html#contents">Table of contents</a> – <a href="history.html">6.10 Session history and navigation →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h3 id="offline"><span class="secno">6.9 </span>Offline Web applications</h3><p class="XXX annotation"><b>Status: </b><i>Last call for comments</i></p><!-- v2 ideas for appcache: Index: obsolete.html =================================================================== RCS file: /sources/public/html5/spec/obsolete.html,v retrieving revision 1.454 retrieving revision 1.455 diff -u -d -r1.454 -r1.455 --- obsolete.html 5 Oct 2009 02:26:33 -0000 1.454 +++ obsolete.html 5 Oct 2009 03:26:32 -0000 1.455 @@ -223,7 +223,7 @@ <a href="the-xhtml-syntax.html">← 10 The XHTML syntax</a> – <a href="spec.html#contents">Table of contents</a> – <a href="iana-considerations.html">IANA considerations →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h2 id="obsolete"><span class="secno">12 </span>Obsolete features</h2><h3 id="obsolete-but-conforming-features"><span class="secno">12.1 </span>Obsolete but conforming features</h3><p>Features listed in this section will trigger warnings in Index: named-character-references.html =================================================================== RCS file: /sources/public/html5/spec/named-character-references.html,v retrieving revision 1.455 retrieving revision 1.456 diff -u -d -r1.455 -r1.456 --- named-character-references.html 5 Oct 2009 02:26:33 -0000 1.455 +++ named-character-references.html 5 Oct 2009 03:26:32 -0000 1.456 @@ -223,7 +223,7 @@ <a href="syntax.html">← 9 The HTML syntax</a> – <a href="spec.html#contents">Table of contents</a> – <a href="the-xhtml-syntax.html">10 The XHTML syntax →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h3 id="named-character-references"><span class="secno">9.6 </span><dfn>Named character references</dfn></h3><p>This table lists the character reference names that are supported Index: references.html =================================================================== RCS file: /sources/public/html5/spec/references.html,v retrieving revision 1.462 retrieving revision 1.463 diff -u -d -r1.462 -r1.463 --- references.html 5 Oct 2009 02:26:33 -0000 1.462 +++ references.html 5 Oct 2009 03:26:32 -0000 1.463 @@ -223,7 +223,7 @@ <a href="index.html">← Index</a> – <a href="spec.html#contents">Table of contents</a> – <a href="acknowledgements.html">Acknowledgements →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h2 class="no-num" id="references">References</h2><p class="XXX annotation"><b>Status: </b><i>First draft</i></p><!--REFS--><!--END vCard--><!--END vEvent--><p>All references are normative unless marked "Non-normative".</p><!--START vCard--><!--START vEvent--><dl><dt id="refsABNF">[ABNF]</dt> Index: iana-considerations.html =================================================================== RCS file: /sources/public/html5/spec/iana-considerations.html,v retrieving revision 1.305 retrieving revision 1.306 diff -u -d -r1.305 -r1.306 --- iana-considerations.html 5 Oct 2009 02:26:32 -0000 1.305 +++ iana-considerations.html 5 Oct 2009 03:26:32 -0000 1.306 @@ -223,7 +223,7 @@ <a href="obsolete.html">← 12 Obsolete features</a> – <a href="spec.html#contents">Table of contents</a> – <a href="index.html">Index →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h2 class="no-num" id="iana-considerations">IANA considerations</h2><p class="XXX annotation"><b>Status: </b><i>First draft</i></p><!-- http://www.w3.org/2002/06/registering-mediatype.html --><p>This registration is for community review and will be submitted Index: semantics.html =================================================================== RCS file: /sources/public/html5/spec/semantics.html,v retrieving revision 1.462 retrieving revision 1.463 diff -u -d -r1.462 -r1.463 --- semantics.html 5 Oct 2009 02:26:33 -0000 1.462 +++ semantics.html 5 Oct 2009 03:26:32 -0000 1.463 @@ -223,7 +223,7 @@ <a href="embedded-content-0.html">← 3.2.5.1.6 Embedded content</a> – <a href="spec.html#contents">Table of contents</a> – <a href="text-level-semantics.html">4.6 Text-level semantics →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h2 id="semantics"><span class="secno">4 </span>The elements of HTML</h2><h3 id="the-root-element"><span class="secno">4.1 </span>The root element</h3><h4 id="the-html-element-0"><span class="secno">4.1.1 </span>The <dfn><code>html</code></dfn> element</h4><dl class="element"><dt>Categories</dt> Index: index.html =================================================================== RCS file: /sources/public/html5/spec/index.html,v retrieving revision 1.462 retrieving revision 1.463 diff -u -d -r1.462 -r1.463 --- index.html 5 Oct 2009 02:26:32 -0000 1.462 +++ index.html 5 Oct 2009 03:26:32 -0000 1.463 @@ -223,7 +223,7 @@ <a href="iana-considerations.html">← IANA considerations</a> – <a href="spec.html#contents">Table of contents</a> – <a href="references.html">References →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h2 class="no-num" id="index">Index</h2><p class="XXX annotation"><b>Status: </b><i>First draft</i></p><p><i>This section is non-normative.</i></p><table><caption>List of elements</caption> Index: comms.html =================================================================== RCS file: /sources/public/html5/spec/comms.html,v retrieving revision 1.462 retrieving revision 1.463 diff -u -d -r1.462 -r1.463 --- comms.html 5 Oct 2009 02:26:32 -0000 1.462 +++ comms.html 5 Oct 2009 03:26:32 -0000 1.463 @@ -223,7 +223,7 @@ <a href="editing.html">← 7 User Interaction</a> – <a href="spec.html#contents">Table of contents</a> – <a href="syntax.html">9 The HTML syntax →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h2 id="comms"><span class="secno">8 </span>Communication</h2><h3 id="event-definitions"><span class="secno">8.1 </span>Event definitions</h3><p>Messages in <span>server-sent events</span>, <span>Web Index: spec.html =================================================================== RCS file: /sources/public/html5/spec/spec.html,v retrieving revision 1.464 retrieving revision 1.465 diff -u -d -r1.464 -r1.465 --- spec.html 5 Oct 2009 02:26:33 -0000 1.464 +++ spec.html 5 Oct 2009 03:26:33 -0000 1.465 @@ -241,7 +241,7 @@ </dl><p>This specification is available in the following formats: <a href="Overview.html">single page HTML</a>, <a href="spec.html">multipage HTML</a>. -This is revision 1.3237. +This is revision 1.3238. </p> <p class="copyright"><a href="http://www.w3.org/Consortium/Legal/ipr-notice#Copyright">Copyright</a> © 2009 <a href="http://www.w3.org/"><abbr title="World Wide Index: introduction.html =================================================================== RCS file: /sources/public/html5/spec/introduction.html,v retrieving revision 1.462 retrieving revision 1.463 diff -u -d -r1.462 -r1.463 --- introduction.html 5 Oct 2009 02:26:32 -0000 1.462 +++ introduction.html 5 Oct 2009 03:26:32 -0000 1.463 @@ -221,7 +221,7 @@ </div><nav> <a href="spec.html#contents">Table of contents</a> – <a href="infrastructure.html">2 Common infrastructure →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h2 id="introduction"><span class="secno">1 </span>Introduction</h2><p class="XXX annotation"><b>Status: </b><i>Working draft</i></p><h3 id="background"><span class="secno">1.1 </span>Background</h3><p><i>This section is non-normative.</i></p><p>The World Wide Web's markup language has always been HTML. HTML Index: syntax.html =================================================================== RCS file: /sources/public/html5/spec/syntax.html,v retrieving revision 1.462 retrieving revision 1.463 diff -u -d -r1.462 -r1.463 --- syntax.html 5 Oct 2009 02:26:33 -0000 1.462 +++ syntax.html 5 Oct 2009 03:26:33 -0000 1.463 @@ -223,7 +223,7 @@ <a href="comms.html">← 8 Communication</a> – <a href="spec.html#contents">Table of contents</a> – <a href="named-character-references.html">9.6 Named character references →</a> - </nav><p>This is revision 1.3237.</p> + </nav><p>This is revision 1.3238.</p> <h2 id="syntax"><span class="secno">9 </span><dfn>The HTML syntax</dfn></h2><p class="note">This section only describes the rules for @@ -498,9 +498,39 @@ characters</a>, any U+0022 QUOTATION MARK (<code>"</code>) characters, U+0027 APOSTROPHE (<code>'</code>) characters, U+003D EQUALS SIGN (<code>=</code>) characters, U+003C LESS-THAN - SIGN (<code><</code>) characters, or U+003E GREATER-THAN SIGN - (<code>></code>) characters, and must not be the empty - string.</p> + SIGN (<code><</code>) characters, U+003E GREATER-THAN SIGN + (<code>></code>) characters, or U+0060 GRAVE ACCENT (`) + characters, and must not be the empty string.</p> + + <!-- The ` character is in this list on a temporary basis, waiting + for IE to fix it's parsing bug whereby it treats ` as an + attribute value delimiter. Otherwise, escaping software that + tries to be clever and not use quotes when it doesn't need to + could be tricked by an attacker. + + Posit a site that allows the user to input text that is used + verbatim in two attributes, such that the user can set the + first attribute's value to: + + ` + + ...and the second to: + + ` onload='...payload...' end=x + + ...with the assumption that the site is going to not quote + the first one, and quote the second one with double quotes: + + <body title=` class="` onload='...payload...' end=x"> + + In IE, this is treated as: + + <body title=' class="' + onload='...payload...' + end='x"'> + + --> + <div class="example"> @@ -2457,6 +2487,7 @@ <dt>U+003C LESS-THAN SIGN (<)</dt> <dt>U+003D EQUALS SIGN (=)</dt> + <dt>U+0060 GRAVE ACCENT (`)</dt> <dd><a href="#parse-error">Parse error</a>. Treat it as per the "anything else" entry below.</dd> @@ -2537,6 +2568,7 @@ <dt>U+0027 APOSTROPHE (')</dt> <dt>U+003C LESS-THAN SIGN (<)</dt> <dt>U+003D EQUALS SIGN (=)</dt> + <dt>U+0060 GRAVE ACCENT (`)</dt> <dd><a href="#parse-error">Parse error</a>. Treat it as per the "anything else" entry below.</dd>
Received on Monday, 5 October 2009 03:26:39 UTC