[TYPO3-core] RFC: #8090: Menu creation has empty defaults which could lead to problems

Michael Stucki michael at typo3.org
Sun Apr 13 23:04:56 CEST 2008


Ingo Renner wrote:

> Martin Kutschker wrote:
> 
>> Which in turn has to be entered by an editor. So it's probably on
>> purpose.
> 
> agreed, although of course one could have bad editors in the team.

Exactly. I would even say this is a security problem to be possible. Any
reasons to allow JavaScript code in a title? Otherwise I'm all for blocking
it.

- michael
-- 
Use a newsreader! Check out
http://typo3.org/community/mailing-lists/use-a-news-reader/


More information about the TYPO3-team-core mailing list