[Sage] Sage 1.3.7 feed rendering regression
Peter Andrews
petea at jhu.edu
Thu Oct 5 19:30:28 PDT 2006
On Oct 5, 2006, at 1:38 PM, Dmitry Semyonov wrote:
> Rendered channel looks fine in 1.3.8 version, except for video objects
> defined by param and embed tags. They are simply ignored. 1.3.6
> displayed the objects properly. E.g. "Farewell to Expedition
> 13/Ansari" item of the feed.
Yes, this is the intended behavior. Unfortunately, the object
elements are a potential attack vector, and we have filtered them out
as a security measure.
peter
More information about the Sage
mailing list