From a57ecef253beb0bc8d4520face8fbe317cfba148 Mon Sep 17 00:00:00 2001 From: Robin Ward Date: Thu, 20 Feb 2014 11:10:15 -0500 Subject: [PATCH] BUGFIX: Do not allow `font` tags. --- app/assets/javascripts/defer/html-sanitizer-bundle.js | 5 ----- 1 file changed, 5 deletions(-) diff --git a/app/assets/javascripts/defer/html-sanitizer-bundle.js b/app/assets/javascripts/defer/html-sanitizer-bundle.js index 366fe1b4cc7..0886fb5ece6 100644 --- a/app/assets/javascripts/defer/html-sanitizer-bundle.js +++ b/app/assets/javascripts/defer/html-sanitizer-bundle.js @@ -835,9 +835,6 @@ html4.ATTRIBS = { 'dir::compact': 0, 'div::align': 0, 'dl::compact': 0, - 'font::color': 0, - 'font::face': 0, - 'font::size': 0, 'h1::align': 0, 'h2::align': 0, 'h3::align': 0, @@ -944,7 +941,6 @@ html4.ELEMENTS = { 'em': 0, 'figcaption': 0, 'figure': 0, - 'font': 0, 'frame': 274, 'frameset': 272, 'h1': 0, @@ -1052,7 +1048,6 @@ html4.ELEMENT_DOM_INTERFACES = { 'fieldset': 'HTMLFieldSetElement', 'figcaption': 'HTMLElement', 'figure': 'HTMLElement', - 'font': 'HTMLFontElement', 'footer': 'HTMLElement', 'form': 'HTMLFormElement', 'frame': 'HTMLFrameElement',