mirror of
https://github.com/EGroupware/egroupware.git
synced 2024-11-24 17:04:14 +01:00
8f797be836
- can be used via html class like: $clean_html = html::purify($html); - using it now in eTemplate to remove malicious code from html: a) when displaying "formatted text" b) when "formatted text" get's input by the user
43 lines
1.1 KiB
PHP
Executable File
43 lines
1.1 KiB
PHP
Executable File
<?php
|
|
|
|
/**
|
|
* Validator for the components of a URI for a specific scheme
|
|
*/
|
|
class HTMLPurifier_URIScheme
|
|
{
|
|
|
|
/**
|
|
* Scheme's default port (integer)
|
|
*/
|
|
public $default_port = null;
|
|
|
|
/**
|
|
* Whether or not URIs of this schem are locatable by a browser
|
|
* http and ftp are accessible, while mailto and news are not.
|
|
*/
|
|
public $browsable = false;
|
|
|
|
/**
|
|
* Whether or not the URI always uses <hier_part>, resolves edge cases
|
|
* with making relative URIs absolute
|
|
*/
|
|
public $hierarchical = false;
|
|
|
|
/**
|
|
* Validates the components of a URI
|
|
* @note This implementation should be called by children if they define
|
|
* a default port, as it does port processing.
|
|
* @param $uri Instance of HTMLPurifier_URI
|
|
* @param $config HTMLPurifier_Config object
|
|
* @param $context HTMLPurifier_Context object
|
|
* @return Bool success or failure
|
|
*/
|
|
public function validate(&$uri, $config, $context) {
|
|
if ($this->default_port == $uri->port) $uri->port = null;
|
|
return true;
|
|
}
|
|
|
|
}
|
|
|
|
// vim: et sw=4 sts=4
|