Skip to content

Use a decent CSS parser for better security #9515

Open
@alecpl

Description

@alecpl

Prerequisites

  • I have searched for duplicate or closed feature requests
  • I have searched for plugins that provide already provide the feature

Proposal

Options:

Motivation and context

Our custom code for css parsing is a can of worms. A decent CSS parser could not only fix #7533, but also possibly make it more secure.

I don't know if there's a decent parser, we need to investigate.

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions