Ticket #1181 (new defect) — at Initial Version

Opened 3 years ago

Last modified 3 years ago

Link spam vulnerability in User-About field

Reported by: dread Owned by: dread
Priority: blocker Milestone:
Component: ckan Keywords:
Cc: Repository: ckan
Theme: none

Description

When viewing a user, the about field contains Markdown, which may have links. These should have rel="nofollow" to discourage link spam.

Note: See TracTickets for help on using tickets.