Menu

kses 0.2.0 out now

kses is an HTML/XHTML filter written in PHP. It removes all unwanted HTML elements and attributes, and it also does several checks on attribute values. kses can be used to avoid Cross-Site Scripting (XSS), Buffer Overflows and Denial of Service attacks.

Version 0.2.0 is out now. It supports attribute value checks (maxlen and maxval), white listing of allowed URL protocols, XHTML, removal of Netscape 4's JavaScript entities and it also has some bug fixes.

Posted by Ulf Harnhammar 2003-07-25

Log in to post a comment.