Ticket #1181 (new defect) — at Initial Version
Link spam vulnerability in User-About field
Reported by: | dread | Owned by: | dread |
---|---|---|---|
Priority: | blocker | Milestone: | |
Component: | ckan | Keywords: | |
Cc: | Repository: | ckan | |
Theme: | none |
Description
When viewing a user, the about field contains Markdown, which may have links. These should have rel="nofollow" to discourage link spam.
Note: See
TracTickets for help on using
tickets.