all repos — grayfriday @ 59358adea87fa5061b5c21be571a3480bf0217a9

blackfriday fork with a few changes

  Relative URIs are considered safe
Darren Coxall darren.coxall@simplybusiness.co.uk
Mon, 09 Dec 2013 14:41:37 +0000
commit

59358adea87fa5061b5c21be571a3480bf0217a9

parent

d0e587acc8a319a3c1613fdf8e08c341f8801e1d

1 files changed, 1 insertions(+), 1 deletions(-)

jump to
M inline.goinline.go

@@ -718,7 +718,7 @@

return linkEnd - rewind } -var validUris = [][]byte{[]byte("http://"), []byte("https://"), []byte("ftp://"), []byte("mailto://")} +var validUris = [][]byte{[]byte("http://"), []byte("https://"), []byte("ftp://"), []byte("mailto://"), []byte("/")} func isSafeLink(link []byte) bool { for _, prefix := range validUris {