From f1c9d90fbb12100f0ce18bb57cfefb8c1a1f845b Mon Sep 17 00:00:00 2001 From: moodler Date: Mon, 9 Jun 2003 05:54:14 +0000 Subject: [PATCH] Better regular expression to catch javascript triggers --- lib/weblib.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/lib/weblib.php b/lib/weblib.php index 7775512090..605cb8ed51 100644 --- a/lib/weblib.php +++ b/lib/weblib.php @@ -512,7 +512,7 @@ function clean_text($text, $format) { case FORMAT_WIKI: $text = strip_tags($text, $ALLOWED_TAGS); $text = str_ireplace("javascript:", " ", $text); // Remove javascript: label - $text = eregi_replace("([^a-z])on([a-z]+)=", " ", $text); // Remove javascript triggers + $text = eregi_replace("([^a-z])on([a-z]+)([[:space:]]*)=", " ", $text); // Remove javascript triggers return $text; case FORMAT_PLAIN: -- 2.39.5