-
Suggestion
-
Resolution: Answered
-
Tomcat 5.5/ jdk 1.5
NOTE: This suggestion is for Confluence Cloud. Using Confluence Server? See the corresponding suggestion.
A new version of the html macro that is secure.
The html macro is very useful for introducing complex text formatting but also introduces a serious security risk.
There is a developer plug in called "html plug-in" that claims to be secure by only allowing white-listed html tags and attributes. However, due to a bug, it is incompatible with the Rich Text Editor. RTE will strip all the html tags from the content.
I think a secure html macro would really enhance the product.
- is related to
-
CONFSERVER-7629 A secure html macro
- Closed