Uploaded image for project: 'eZ Publish / Platform'
  1. eZ Publish / Platform
  2. EZP-13159

ezinfo/about extension info inconsistent usage/insertion of html tags

    Details

    • Type: Bug Bug
    • Status: Open
    • Priority: Medium Medium
    • Resolution: Unresolved
    • Affects Version/s: 3.10.0, 3.9.4, 4.0.0, 4.6.0beta1
    • Fix Version/s: Future
    • Component/s: Legacy > Extensions
    • Labels:
      None

      Description

      It's unclear at the moment in which values in the array returned by an extensions ezinfo.php info method html tags can appear. Also, there happens an automatic replacement of all occurrences of eZ P|publish and eZ S|systems to make links of them.

      Current ezoe (http://svn.ez.no/svn/extensions/eztinymce/trunk/ezoe rev. 2963) for example will show a html tag in the ezinfo/about view output, visible to the user:

      Includes the following library:
       
          * Name : eZ Core, tiny javascript library for ajax and stuff
            Version : 0.95
            Copyright : Copyright (C) 2008 <a href="http://ez.no/">eZ Systems AS</a>
            License : Licensed under the MIT License
      

      Certainly not what we want.

      I suggest that we do not do any automatic replacements any more, and allow anchor tags with a value for the href attribute that uses the http protocol anywhere. All other tags should be escaped.

        Activity

        Hide
        André R added a comment -

        In reply to comment #021577
        Welcome back kc

        You are right, this is still an issue.
        If you can, it would be very helpful if you send a pull request on this, and we will take it from there most likely unless your high standards has vanished over the years

        Show
        André R added a comment - In reply to comment #021577 Welcome back kc You are right, this is still an issue. If you can, it would be very helpful if you send a pull request on this, and we will take it from there most likely unless your high standards has vanished over the years
        Hide
        Kristof Coomans added a comment -

        Still an issue, even with the new extension.xml files: info_url is not treat like a URL, it is not rendered as a link in ezinfo/about.

        Show
        Kristof Coomans added a comment - Still an issue, even with the new extension.xml files: info_url is not treat like a URL, it is not rendered as a link in ezinfo/about.
        Hide
        André R added a comment -

        This seems to be a design issue, the link seems ok in ezwebin design, but not admin (maybe also standard/base design).

        Show
        André R added a comment - This seems to be a design issue, the link seems ok in ezwebin design, but not admin (maybe also standard/base design).

          People

          • Assignee:
            unknown
            Reporter:
            Kristof Coomans
          • Votes:
            0 Vote for this issue
            Watchers:
            0 Start watching this issue

            Dates

            • Created:
              Updated: