Re: [XXE] Revision hack for HTML documents

2016-06-11 Thread Hussein Shafie
Thanks for sharing this technique. On 06/11/2016 05:48 AM, Leif Halvard Silli wrote: Resending with markdown disabled (due to encoding issue with the markdown interpreter of my email program): As is known, the processing instructions (PI) of XMLEditor’s revision functionality have some side e

[XXE] Revision hack for HTML documents

2016-06-10 Thread Leif Halvard Silli
As is known, the processing instructions (PI) of XMLEditor’s revision functionality have some side effects when HTML documents are rendered as text/html in a Web browser: 1. The title elements renders with a PI as part of its textual content 2. Script and style elements stop to function The ti

[XXE] Revision hack for HTML documents

2016-06-10 Thread Leif Halvard Silli
Resending with markdown disabled (due to encoding issue with the markdown interpreter of my email program): As is known, the processing instructions (PI) of XMLEditor’s revision functionality have some side effects when HTML documents are rendered as text/html in a Web browser: 1. The title