escaping a wider range of characters

2006-09-28 Thread Filipe
Hi, The filter docs say for the "escape" filter: Escapes a string's HTML. Specifically, it makes these replacements: * "&" to "&" * < to "<" * > to ">" * '"' (double quote) to '"' * "'" (single quote) to ''' Wouldn't it be nice if it replaced a wider ran

Re: escaping a wider range of characters

2006-09-28 Thread James Bennett
On 9/28/06, Filipe <[EMAIL PROTECTED]> wrote: > Wouldn't it be nice if it replaced a wider range of characters? not > sure how useful it would be, but i think some unusual characters may > not be displayed correctly if not escaped. The five characters that 'escape' transforms correspond to the fi

Re: escaping a wider range of characters

2006-09-29 Thread Filipe
James Bennett wrote: > The five characters that 'escape' transforms correspond to the five > named entities defined in the XML specification; oh, I see. > they can, depending on the situation, be > "markup significant" in SGML- and XML-derived languages and thus pose > a security risk, not becaus

Re: escaping a wider range of characters

2006-10-01 Thread orestis
Filipe wrote: > James Bennett wrote: > > The five characters that 'escape' transforms correspond to the five > > named entities defined in the XML specification; > oh, I see. > > > they can, depending on the situation, be > > "markup significant" in SGML- and XML-derived languages and thus pose >