##// END OF EJS Templates
Fix XSS reported on Security list...
Fix XSS reported on Security list No CVE-ID yet August 18, 2015 ----- Reported to Quantopian by Juan Broullón <thebrowfc@gmail.com>... If you create a new folder in the iPython file browser and set Javascript code as its name the code injected will be executed. So, if I create a folder called "><img src=x onerror=alert(document.cookie)> and then I access to it, the cookies will be prompted. The XSS code is also executed if you access a link pointing directly at the folder. jik ------
Matthias Bussonnier -
r21633:3ab41641
Show More
Name Size Modified Last Commit Author
/ docs
man
resources
source
sphinxext
Makefile Loading ...
README.rst Loading ...
autogen_api.py Loading ...
autogen_config.py Loading ...
autogen_magics.py Loading ...
gh-pages.py Loading ...
jsdoc_config.json Loading ...
jsdoc_plugin.js Loading ...
make.cmd Loading ...

IPython Documentation

This directory contains the majority of the documentation for IPython.

Requirements

The following tools are needed to build the documentation:

sphinx jsdoc

On Debian-based systems, you should be able to run:

sudo apt-get install python-sphinx npm
sudo npm install -g jsdoc@"<=3.3.0"

The documentation gets built using make, and comes in several flavors.

make html - build the API (both Javascript and Python) and narrative documentation web pages, this is the the default make target, so running just make is equivalent to make html.

make html_noapi - same as above, but without running the auto-generated API docs. When you are working on the narrative documentation, the most time consuming portion of the build process is the processing and rending of the API documentation. This build target skips that.

make jsapi - build Javascript auto-generated API documents.

make pdf will compile a pdf from the documentation.

You can run make help to see information on all possible make targets.