git-svn-id: https://svn.code.sf.net/p/squirrelmail/code/trunk/squirrelmail@10315
7612ce4b-ef26-0410-bec9-
ea0150e637f0
- Make test for IE6 in SendDownloadHeaders also match versions higher
than 6 (#1339211).
- Allow double quote to be used in MOTD (#1276959).
+ - Prevent right_frame to be set to '//www.example.com'.
Version 1.5.0 - 2 February 2004
-------------------------------
*
* This was done to create a pure HTML way of refreshing the folder list since
* we would like to use as little Javascript as possible.
+ *
+ * The test for // should catch any attempt to include off-site webpages into
+ * our frameset.
*/
-if (empty($right_frame) || (strpos(urldecode($right_frame), '://'))) {
+if (empty($right_frame) || (strpos(urldecode($right_frame), '//') !== false)) {
$right_frame = '';
}
?>
</frameset>
-</html>
\ No newline at end of file
+</html>