[TYPO3-core] RFC: #14911: Validation errors in list view: & > &-amp;

Georg Ringer news at ringerge.org
Tue Jun 29 10:55:16 CEST 2010


Am 29.06.2010 09:55, schrieb Jigal van Hemert:
> Did a quick search on /&[a-zA-Z]+[-_a-zA-Z0-9]+(?=\[|=)/ in trunk. This
> gave 1491 matches in 197 files. There are a lot of false-positives in
> the results (inside comments for example), but I estimate that about
> half of it are query parameters.

IMO there are far more false positives. Just by looking at
typo3/db_new.php > there are many &something but IMO everyonce except 2
are htmlspecialchared.

Georg


More information about the TYPO3-team-core mailing list