[TYPO3-dev] Password reset links breaking - felogin

Oliver Klee typo3-german-02 at oliverklee.de
Tue Feb 15 15:02:58 CET 2011


Hi,

Am 15.02.2011 14:13, schrieb Jigal van Hemert:
> No matter how the square brackets are used at the receiving end a URL
> must never be cut off when a reserved character is found. This becomes
> very clear when you look at the list of gen-delims:
>     gen-delims  = ":" / "/" / "?" / "#" / "[" / "]" / "@"
> 
> IMO this behaviour of mail clients is simply wrong.
> 
> [1] http://www.faqs.org/rfcs/rfc3986.html

However, encoding the square brackets as %5B and %5D makes the URLs in
the e-mails no less valid, but allows them to work in most e-mail
clients. So I think the encoding would make sense and save our clients
some frustration.


Oli
-- 
Certified TYPO3 Integrator | TYPO3 Security Team Member




More information about the TYPO3-dev mailing list