[wp-trac] [WordPress Trac] #20421: Remove support for Netscape 4 from kses.php (because it's 2012)

WordPress Trac noreply at wordpress.org
Sun Sep 13 16:56:52 UTC 2015


#20421: Remove support for Netscape 4 from kses.php (because it's 2012)
-------------------------+----------------------
 Reporter:  Ipstenu      |       Owner:
     Type:  enhancement  |      Status:  closed
 Priority:  normal       |   Milestone:
Component:  Security     |     Version:
 Severity:  normal       |  Resolution:  invalid
 Keywords:               |     Focuses:
-------------------------+----------------------

Comment (by dmsnell):

 Recreated in #33848 because I did not find this ticket when I opened the
 new one.

 @nacin: It has been difficult for me to find out definitely if this
 impacts any browser within the past ten years, but the initial answer
 appears to be that it does not.

 The thing that I'm most uncertain of is how to verify that, but I believe
 that if we constructed a white hat XSS vulnerability and tested it across
 the varying platforms we could have a definitive answer.

--
Ticket URL: <https://core.trac.wordpress.org/ticket/20421#comment:7>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list