[XML-DEV Mailing List Archive Home] [By Thread] [By Date] [Recent Entries] [Reply To This Message] Re: Namespace prefixes are a security risk
> I welcome your comments. as others have said, there is no reason to single out out namespace prefixes. Information can be encoded in the use of white space, or the choice of " or ' around attribute values for example. Also the posted code has a real chance of breaking the docuement as it doesn't consider qnames in content. If for example you applied that to a xslt stylesheet to normalise the prefixes used, then all xpaths within the stylesheet would break unless you changed them to match which isn't really possible without access to an xpath parser at run time. David
[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] |
PURCHASE STYLUS STUDIO ONLINE TODAY!Purchasing Stylus Studio from our online shop is Easy, Secure and Value Priced! Download The World's Best XML IDE!Accelerate XML development with our award-winning XML IDE - Download a free trial today! Subscribe in XML format
|