Ricordisamoa has uploaded a new change for review.

  https://gerrit.wikimedia.org/r/277062

Change subject: HTMLPurifier: try to forbid some CSS properties
......................................................................

HTMLPurifier: try to forbid some CSS properties

Change-Id: I7166ef97900944c511d4a00a9b0de1ed6437f2be
---
M www/index.php
1 file changed, 14 insertions(+), 0 deletions(-)


  git pull ssh://gerrit.wikimedia.org:29418/labs/toollabs 
refs/changes/62/277062/1

diff --git a/www/index.php b/www/index.php
index 040606b..7aa26e5 100644
--- a/www/index.php
+++ b/www/index.php
@@ -107,6 +107,20 @@
 $config->set( 'URI.Base', 'https://tools.wmflabs.org' );
 $config->set( 'URI.MakeAbsolute', true );
 $config->set( 'URI.DisableExternalResources', true );
+$config->set( 'CSS.ForbiddenProperties',
+       array(
+               'margin' => true,
+               'margin-top' => true,
+               'margin-right' => true,
+               'margin-bottom' => true,
+               'margin-left' => true,
+               'padding' => true,
+               'padding-top' => true,
+               'padding-right' => true,
+               'padding-bottom' => true,
+               'padding-left' => true
+       )
+);
 $purifier = new HTMLPurifier( $config );
 ?><!DOCTYPE html>
 <html>

-- 
To view, visit https://gerrit.wikimedia.org/r/277062
To unsubscribe, visit https://gerrit.wikimedia.org/r/settings

Gerrit-MessageType: newchange
Gerrit-Change-Id: I7166ef97900944c511d4a00a9b0de1ed6437f2be
Gerrit-PatchSet: 1
Gerrit-Project: labs/toollabs
Gerrit-Branch: master
Gerrit-Owner: Ricordisamoa <[email protected]>

_______________________________________________
MediaWiki-commits mailing list
[email protected]
https://lists.wikimedia.org/mailman/listinfo/mediawiki-commits

Reply via email to