Opened 8 years ago

Closed 8 years ago

Last modified 4 years ago

#2426 closed defect (worksforme)

Disable inline image support in Trac tickets and wiki pages

Reported by: rransom Owned by: phobos
Priority: Medium Milestone:
Component: Internal Services/Service - trac Version:
Severity: Keywords:
Cc: Actual Points:
Parent ID: Points:
Reviewer: Sponsor:

Description

Ticket #2425 (a spam ticket which should be deleted as soon as a Trac admin sees it) contains two HTML IMG tags linking to off-site images. This allows the sites hosting the images to determine who is viewing the page and how many times the page is viewed. We cannot allow this, in either bug tracker tickets or wiki pages.

Child Tickets

Change History (5)

comment:1 Changed 8 years ago by phobos

Owner: changed from erinn to phobos
Status: newaccepted

There's no easy way to do this in trac. We allow images in wiki/ticket text to augment instructions or bug reports. Given this is the exception, and has not happened again, I'm not too worried about it.

comment:2 Changed 8 years ago by phobos

Priority: blockernormal

comment:3 in reply to:  1 Changed 8 years ago by rransom

Replying to phobos:

There's no easy way to do this in trac. We allow images in wiki/ticket text to augment instructions or bug reports. Given this is the exception, and has not happened again, I'm not too worried about it.

Spam tickets quite frequently included inline images. Perhaps the spam filter plugin will take care of them for us once we train it.

comment:4 Changed 8 years ago by phobos

Resolution: worksforme
Status: acceptedclosed

it appears the problem has been resolved either on its own, or by the spam plugin.

comment:5 Changed 4 years ago by qbi

Component: TracService - trac

Move all tickets from trac to "Service - trac" component.

Note: See TracTickets for help on using tickets.