Files
cachet-docker/config/security.php
2015-03-20 18:30:45 -06:00

26 lines
637 B
PHP

<?php
/*
* This file is part of Laravel Security.
*
* (c) Graham Campbell <graham@mineuk.com>
*
* For the full copyright and license information, please view the LICENSE
* file that was distributed with this source code.
*/
return [
/*
|--------------------------------------------------------------------------
| Evil attributes
|--------------------------------------------------------------------------
|
| This defines the evil attributes and they will be always be removed from
| the input.
|
*/
'evil' => ['(?<!\w)on\w*', 'style', 'xmlns', 'formaction', 'form', 'xlink:href'],
];