|
|
|
@ -1214,8 +1214,8 @@ function rcmail_mod_html_body($body, $container_id)
|
|
|
|
|
while ($body != $prev_body)
|
|
|
|
|
{
|
|
|
|
|
$prev_body = $body;
|
|
|
|
|
$body = preg_replace('/(<[^!][^>]*?\s)(on[^=]+)(=[^>]*?>)/im', '$1__removed=$3', $body);
|
|
|
|
|
$body = preg_replace('/(<[^!][^>]*?\shref=["\']?)(javascript:)([^>]*?>)/im', '$1null:$3', $body);
|
|
|
|
|
$body = preg_replace('/(<[^!][^>]*\s)(on[^=>]+)=([^>]+>)/im', '$1__removed=$3', $body);
|
|
|
|
|
$body = preg_replace('/(<[^!][^>]*\shref=["\']?)(javascript:)([^>]*?>)/im', '$1null:$3', $body);
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
// resolve <base href>
|
|
|
|
|