summaryrefslogtreecommitdiff
path: root/lib/api/projects.rb
diff options
context:
space:
mode:
authorRobert Speicher <robert@gitlab.com>2016-05-07 19:08:46 +0000
committerRobert Speicher <robert@gitlab.com>2016-05-07 19:08:46 +0000
commit4a844b73ff2daf6b08dc36a8c7117df753b8bdd7 (patch)
tree29a415bf256895bd84d4a9bb26dc3702c5aea9f5 /lib/api/projects.rb
parentf3578baa83ca8d576f4fe1bef50ebae61615768e (diff)
parent21d89d0286e385d6d0a4debdbf7c801939c3e279 (diff)
downloadgitlab-ce-4a844b73ff2daf6b08dc36a8c7117df753b8bdd7.tar.gz
Merge branch 'fix-sanitize-svg' into 'master'
Update SVG sanitizer to conform to SVG 1.1 Original SVG sanitizer would strip out necessary elements and attributes. Use a custom Loofah scrubber since sanitize 2.x transformers are inadequate to handle case-sensitive SVG attributes since they parse documents as HTML instead of XML, which causes all SVG attribute names (e.g. `viewBox`) to be downcased. * SVG element list: https://www.w3.org/TR/SVG/eltindex.html * SVG attribute list: https://www.w3.org/TR/SVG/attindex.html Closes #14555 See merge request !3401
Diffstat (limited to 'lib/api/projects.rb')
0 files changed, 0 insertions, 0 deletions