From e6ab6c957aa6b2382abdfa2c7c8c60623a4e17f9 Mon Sep 17 00:00:00 2001 From: Brett Profitt Date: Fri, 19 Oct 2012 13:53:37 -0400 Subject: Added special checks for mailto: in elgg_normalize_url() and elgg.normalize_url(). --- engine/lib/output.php | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) (limited to 'engine/lib/output.php') diff --git a/engine/lib/output.php b/engine/lib/output.php index 7bfc4be6e..0069360f0 100644 --- a/engine/lib/output.php +++ b/engine/lib/output.php @@ -271,8 +271,8 @@ function elgg_normalize_url($url) { // '?query=test', #target return $url; - } elseif (stripos($url, 'javascript:') === 0) { - // 'javascript:' + } elseif (stripos($url, 'javascript:') === 0 || stripos($url, 'mailto:') === 0) { + // 'javascript:' and 'mailto:' // Not covered in FILTER_VALIDATE_URL return $url; -- cgit v1.2.3