forked from extern/egroupware
8f797be836
- can be used via html class like: $clean_html = html::purify($html); - using it now in eTemplate to remove malicious code from html: a) when displaying "formatted text" b) when "formatted text" get's input by the user
16 lines
269 B
PHP
Executable File
16 lines
269 B
PHP
Executable File
<?php
|
|
|
|
/**
|
|
* Validates arbitrary text according to the HTML spec.
|
|
*/
|
|
class HTMLPurifier_AttrDef_Text extends HTMLPurifier_AttrDef
|
|
{
|
|
|
|
public function validate($string, $config, $context) {
|
|
return $this->parseCDATA($string);
|
|
}
|
|
|
|
}
|
|
|
|
// vim: et sw=4 sts=4
|