angler-fishThe Vulnerability History Project

Fixed is_safe_url() to reject URLs that use a scheme other than HTTP/S.

      This is a security fix; disclosure to follow shortly.
    
commit 79594b40c087c19fecc72af042c835b11a519b78
+2 -6
+3 -4
expand_less