Re: stripping HTML, SQL injections ...

From: Alvaro Herrera <alvherre(at)alvh(dot)no-ip(dot)org>
To: Martin Gainty <mgainty(at)hotmail(dot)com>
Cc: Ian Barwick <barwick(at)gmail(dot)com>, Scott Marlowe <scott(dot)marlowe(at)gmail(dot)com>, pgsql-general <pgsql-general(at)postgresql(dot)org>
Subject: Re: stripping HTML, SQL injections ...
Date: 2007-11-15 02:52:20
Message-ID: 20071115025220.GY19014@alvh.no-ip.org
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-general

Martin Gainty escribió:
> this is a very simple html tag strip routine
> I dont understand what security you had in mind ..
>
> so I take it you're not a fan of dojo or GWT?

Let's say the user disables javascript on the browser?

--
Alvaro Herrera http://www.advogato.org/person/alvherre
"Aprende a avergonzarte más ante ti que ante los demás" (Demócrito)

In response to

Responses

Browse pgsql-general by date

  From Date Subject
Next Message SHARMILA JOTHIRAJAH 2007-11-15 03:25:03 Re: pg_dump problem
Previous Message Merlin Moncure 2007-11-15 02:06:47 Re: Path to top of tree