[wp-trac] Re: [WordPress Trac] #3420: Should not filter class attribute on abbr used in hreview microformat

WordPress Trac wp-trac at lists.automattic.com
Wed Mar 28 02:17:46 GMT 2007


#3420: Should not filter class attribute on abbr used in hreview microformat
----------------------------+-----------------------------------------------
 Reporter:  conoro          |        Owner:  anonymous
     Type:  defect          |       Status:  new      
 Priority:  normal          |    Milestone:  2.3      
Component:  Administration  |      Version:  2.0.5    
 Severity:  normal          |   Resolution:           
 Keywords:  has-patch       |  
----------------------------+-----------------------------------------------
Comment (by foolswisdom):

 Replying to [comment:10 johnbillion]:
 > It's interesting to see that many other blogging platforms and CMSs
 disallow the class attribute,
 > but it still doens't explain why the class attribute can be dangerous.

 I guess the concern is that a user could use an existing CSS class for the
 web site to fool a visitor to a site.

-- 
Ticket URL: <http://trac.wordpress.org/ticket/3420#comment:11>
WordPress Trac <http://trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list