You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I found a rather critical bug in the CSS validator implementation (validation does always fail for attributes having both literal values and regexes defined in the policy file) and was going to push you a pull request ...
Besides that there are some typos like AntiySamyPolicy instead of AntiSamyPolicy.
Best regards
The text was updated successfully, but these errors were encountered:
@flobernd if you are still concerned about this, I'm about to recover the .NET version of AntiSamy from OWASP's side and actually I was "forced" to use some Caner's code to make it work quickly, which must have the vulnerability you are mentioning. I'm not fully aware of the project's internals to understand where the issue is but I might know where it's located. If you want to help with this particular issue or eventually contribute to the other project, reach me at [email protected].
Hi there,
do you still maintain this library?
I found a rather critical bug in the CSS validator implementation (validation does always fail for attributes having both literal values and regexes defined in the policy file) and was going to push you a pull request ...
Besides that there are some typos like
AntiySamyPolicy
instead ofAntiSamyPolicy
.Best regards
The text was updated successfully, but these errors were encountered: