Re: RFC: Implementing a core anti-XSS escaping class
| From: | Michael Shadle | Date: | Tue, 18 Sep 2012 16:39:55 +0000 |
| Subject: | Re: RFC: Implementing a core anti-XSS escaping class | ||
| References: | 1 2 3 4 5 | Groups: | php.internals |
| Request: | Send a blank email to internals+get-63067@lists.php.net to get a copy of this message | ||
Also as there is also htmlspecialchars() which most people use for escaping this seems like a
better, more centralized functionality and better nomenclature for escaping on output in general
with options for various types (and should just be utf-8 by default :))