2008-06-19 21:43:57 +00:00
|
|
|
HTML Purifier 3.1.1 is a security and bugfix release. This release addresses
|
|
|
|
two security vulnerabilities, both related to CSS, and one of which only
|
|
|
|
applies to users using Shift_JIS as their output encoding. There is also
|
|
|
|
a security improvement regarding the imagecrash attack. There is a backwards
|
2008-06-20 01:48:46 +00:00
|
|
|
incompatible change in which resources are no longer munged
|
2008-06-19 21:43:57 +00:00
|
|
|
by default; please enable using %URI.MungeResources. Besides this, there
|
|
|
|
are numerous improvements to URI munging, esp. with the addition of
|
2008-06-20 01:48:46 +00:00
|
|
|
%URI.MungeSecretKey, as well as an experimental %HTML.SafeObject and %HTML.SafeEmbed.
|