[nycphp-talk] $_SERVER['PHP_SELF'} not working?
David Mintz
dmintz at davidmintz.org
Thu Jul 21 16:06:40 EDT 2005
On Thu, 21 Jul 2005, Chris Shiflett wrote:
> [...]
> http://blog.phpdoc.info/archives/13-XSS-Woes.html
>
> As Dan pointed out, the default action is the current URL anyway.
It looks as though "action" is a required attribute of the FORM element
according to the HTML 4.01 spec. I wonder if empty string is a valid
value... guess I should test it against a validator.
---
David Mintz
http://davidmintz.org/
More information about the talk
mailing list