Showing content from https://github.com/w3c/csswg-drafts/issues/11860 below:
[css-forms-1] control-value() security and handling · Issue #11860 · w3c/csswg-drafts · GitHub
Skip to content Navigation Menu
Saved searches Use saved searches to filter your results more quickly
Sign up You signed in with another tab or window. Reload to refresh your session. You signed out in another tab or window. Reload to refresh your session. You switched accounts on another tab or window. Reload to refresh your session. Dismiss alert Additional navigation options
[css-forms-1] control-value() security and handling #11860
Description
control-value()
is morally equivalent to attr()
, just with some special handling of the values since we know something about types. So, it should work identically to attr()
:
- it's an "arbitrary substitution function"
- it has the same tainting behavior as attr() (and so can't be used in a URL)
You can’t perform that action at this time.
RetroSearch is an open source project built by @garambo
| Open a GitHub Issue
Search and Browse the WWW like it's 1997 | Search results from DuckDuckGo
HTML:
3.2
| Encoding:
UTF-8
| Version:
0.7.3