From e6ab6c957aa6b2382abdfa2c7c8c60623a4e17f9 Mon Sep 17 00:00:00 2001 From: Brett Profitt Date: Fri, 19 Oct 2012 13:53:37 -0400 Subject: Added special checks for mailto: in elgg_normalize_url() and elgg.normalize_url(). --- engine/lib/output.php | 4 ++-- js/lib/elgglib.js | 2 +- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/engine/lib/output.php b/engine/lib/output.php index 7bfc4be6e..0069360f0 100644 --- a/engine/lib/output.php +++ b/engine/lib/output.php @@ -271,8 +271,8 @@ function elgg_normalize_url($url) { // '?query=test', #target return $url; - } elseif (stripos($url, 'javascript:') === 0) { - // 'javascript:' + } elseif (stripos($url, 'javascript:') === 0 || stripos($url, 'mailto:') === 0) { + // 'javascript:' and 'mailto:' // Not covered in FILTER_VALIDATE_URL return $url; diff --git a/js/lib/elgglib.js b/js/lib/elgglib.js index 81209ebd0..dc7c07165 100644 --- a/js/lib/elgglib.js +++ b/js/lib/elgglib.js @@ -283,7 +283,7 @@ elgg.normalize_url = function(url) { } // 'javascript:' - else if (url.indexOf('javascript:') === 0) { + else if (url.indexOf('javascript:') === 0 || url.indexOf('mailto:') === 0 ) { return url; } -- cgit v1.2.3