AContent
AContent copied to clipboard
Protect against XSS and CSRF + some improvements
Hello.., This is a pull request for issue #29 .
There are some new problems with the content editor and rendered content contain page templates. When a page template is added the reorder buttons and a rouge X gets rendered when the content is displayed. The reorder button should only appear in the Page Template preview in the content editor.
data:image/s3,"s3://crabby-images/1cf92/1cf92caa139536b7019487ce642267a96037a938" alt="content_screen"
Can any of the HTML Purifier files be eliminated. There seems to be a lot of files that are not required. Also things like the form_demo.php in the crsf folder should be cleaned out.
I have not done a thorough code review. This pull request should be broken down into smaller more manageable chunks. And, a little more description provided with each.
As it is I can't merge this pull request.
Hello.., Thanks for fast response. I have updated the files as your suggestion and the issue above should be fixed now. However, I still have faced some warning messages as in original work also behaves like that. I will provide the updates with more descriptive in smaller more manageable chunks as your suggestion. Regards.