Loading...
 
Skip to main content

HTML Purifier removes lots of html tags

Status
Open
Subject
HTML Purifier removes lots of html tags
Version
7.x
Feature
Wiki Plugin (extends basic syntax)
Resolution status
New
Submitted by
Yannick Charton
Lastmod by
Yannick Charton
Rating
(0)
Description

Hi,

The HTML Purifier feature, when enabled, seems to clean really too much the HTML tags.
* when used with Allow HTML feature and there are some html codes on the page
* when used with Allow HTML feature and some html codes are encapsulated with PluginHTML
It is impossible for exemple to use tags such as <script>, <form>, <input type>
The only case where the HTML Purifier feature was not problematic was:
Allow HTML disabled + HTML Purifier enabled + html code encapsuled in PluginHTML

I finally disabled HTML Purifier, and I didn't have any problem anymore with Allow HTML enabled and/or with PluginHTML.

The problem with HTML Purifier can be easily reproduced in a wiki page by inserting any HTML code for a form, and/or by inserting some javascript parts.

Best regards,

Yannick

Files
  1. HTMLPurifier Problem Code Example
Importance
6
Priority
30
Demonstrate Bug on Tiki 19+
Please demonstrate your bug on show2.tiki.org
Demonstrate Bug (older Tiki versions)
Ticket ID
4023
Created
Saturday 29 October, 2011 20:39:54 UTC
by Yannick Charton
LastModif
Saturday 06 July, 2024 10:21:44 UTC


Collapse/expand modules below
Show PHP error messages