[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-24 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16847545#comment-16847545 ] Jacques Le Roux commented on OFBIZ-10187: - Hi Dennis, After our discussion with

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-16 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16841700#comment-16841700 ] Jacques Le Roux commented on OFBIZ-10187: - Hi Dennis, It's from 2011: https://g

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-16 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16841384#comment-16841384 ] Jacques Le Roux commented on OFBIZ-10187: - Actually I checked the changes since

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-16 Thread Dennis Balkir (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16841370#comment-16841370 ] Dennis Balkir commented on OFBIZ-10187: --- Hi Jacques, you are right, these are mis

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-16 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16841361#comment-16841361 ] Jacques Le Roux commented on OFBIZ-10187: - To be totally clear I compared the 2

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-16 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16841292#comment-16841292 ] Jacques Le Roux commented on OFBIZ-10187: - Thanks Dennis, Yes it quite helps :)

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-16 Thread Dennis Balkir (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16841172#comment-16841172 ] Dennis Balkir commented on OFBIZ-10187: --- Hi Jacques, sorry for my late response,

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-16 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16841159#comment-16841159 ] Jacques Le Roux commented on OFBIZ-10187: - Hi [~mbrohl], [~Dennis Balkir] Sorry

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-15 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16840568#comment-16840568 ] Jacques Le Roux commented on OFBIZ-10187: - I reopened OFBIZ-5254 and will handle

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-09 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16836331#comment-16836331 ] Jacques Le Roux commented on OFBIZ-10187: - h3. Sorry for the digressions in both

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-09 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16836321#comment-16836321 ] Jacques Le Roux commented on OFBIZ-10187: - Mmm, finally it's not as deprecated a

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-09 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16836270#comment-16836270 ] Jacques Le Roux commented on OFBIZ-10187: - Hi [~mbrohl], [~Dennis Balkir], Whil

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-09 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16836229#comment-16836229 ] Jacques Le Roux commented on OFBIZ-10187: - By default we now use a permissive sa

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-09 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16836215#comment-16836215 ] Jacques Le Roux commented on OFBIZ-10187: - Thanks Mathieu, I backported r185893

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-08 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16836109#comment-16836109 ] Jacques Le Roux commented on OFBIZ-10187: - As I needed the fix for OFBIZ-10054,

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-08 Thread Mathieu Lirzin (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16835762#comment-16835762 ] Mathieu Lirzin commented on OFBIZ-10187: I have applied [^OFBIZ-10187_Rewrite-

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-01 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16831198#comment-16831198 ] Jacques Le Roux commented on OFBIZ-10187: - Hi Mathieu, I see no reasons to not

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-05-01 Thread Mathieu Lirzin (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16830996#comment-16830996 ] Mathieu Lirzin commented on OFBIZ-10187: Hello there, I have added [^OFBIZ-101

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-04-30 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16830198#comment-16830198 ] Jacques Le Roux commented on OFBIZ-10187: - Thanks Michael, I tested your R16 pa

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-04-29 Thread Michael Brohl (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16829128#comment-16829128 ] Michael Brohl commented on OFBIZ-10187: --- This is fixed in trunk r1858352 release

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-04-04 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16809894#comment-16809894 ] Jacques Le Roux commented on OFBIZ-10187: - Hi Guys, I made a quick review and t

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-04-02 Thread Michael Brohl (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16808113#comment-16808113 ] Michael Brohl commented on OFBIZ-10187: --- I think we are good to go with the latest

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-04-02 Thread Dennis Balkir (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16807639#comment-16807639 ] Dennis Balkir commented on OFBIZ-10187: --- Hi Michael and Jacques, I added a new pa

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-04-01 Thread Dennis Balkir (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16806865#comment-16806865 ] Dennis Balkir commented on OFBIZ-10187: --- Hi Jacques and Michael, it has been some

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-03-07 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16787637#comment-16787637 ] Jacques Le Roux commented on OFBIZ-10187: - Hi Michael, Agreed, it should be ano

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-03-07 Thread Michael Brohl (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16787225#comment-16787225 ] Michael Brohl commented on OFBIZ-10187: --- [~jacques.le.roux], I think we should no

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-03-07 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16787037#comment-16787037 ] Jacques Le Roux commented on OFBIZ-10187: - Thanks Dennis, I'll have a look ASAP

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2019-03-07 Thread Dennis Balkir (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16787012#comment-16787012 ] Dennis Balkir commented on OFBIZ-10187: --- Hi Jacques, Michael, since this is somet

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2018-12-26 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16729127#comment-16729127 ] Jacques Le Roux commented on OFBIZ-10187: - Good news: we have access again to ht

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2018-01-31 Thread Michael Brohl (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16346886#comment-16346886 ] Michael Brohl commented on OFBIZ-10187: --- I think we have to decide on several point

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2018-01-30 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16345141#comment-16345141 ] Jacques Le Roux commented on OFBIZ-10187: - To summarize, it's a delicate matter.

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2018-01-30 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16345136#comment-16345136 ] Jacques Le Roux commented on OFBIZ-10187: - Div is also referenced from inside owa

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2018-01-30 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16345118#comment-16345118 ] Jacques Le Roux commented on OFBIZ-10187: - I don't remember all about prepackage

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2018-01-30 Thread Jacques Le Roux (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16344965#comment-16344965 ] Jacques Le Roux commented on OFBIZ-10187: - Yes, that's certainly possible, I'll h

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2018-01-30 Thread Michael Brohl (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16344957#comment-16344957 ] Michael Brohl commented on OFBIZ-10187: --- I guess that {code:java} PolicyFactory san

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2018-01-30 Thread Michael Brohl (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16344929#comment-16344929 ] Michael Brohl commented on OFBIZ-10187: --- I had to correct the bug description: the

[jira] [Commented] (OFBIZ-10187) OWASP sanitizer breaks proper rendering of HTML code

2018-01-30 Thread Michael Brohl (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-10187?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16344909#comment-16344909 ] Michael Brohl commented on OFBIZ-10187: --- [~jacques.le.roux], can you explain the i