http://qs321.pair.com?node_id=289739


in reply to Re: Back to acceptable untainted characters
in thread Back to acceptable untainted characters

I have to disagree.

For the integrity of your own server, you are (I believe) correct. But if someone evil submits code that breaks into the browser of whoever is reading the text, that one with the compromized system will not be pleased (s)he used your solution.

So, please strip scripts as a bare minimum.

  • Comment on Re: Re: Back to acceptable untainted characters