Bug #19358 URL Rewriter Blindly Replaces All Links
Submitted: 2002-09-11 10:11 UTC Modified: 2002-10-20 23:20 UTC
From: adam at cryptocomm dot com Assigned:
Status: No Feedback Package: Session related
PHP Version: 4.2.3 OS: Redhat 7.3
Private report: No CVE-ID: None
 [2002-09-11 10:11 UTC] adam at cryptocomm dot com
I'm not sure if this is something that can easily be
repaired or what not, but myself and another programmer
ran in to a problem converting some legacy software to
PHP (from an antiquated language called iHTML). We are
using id based sessions throughout the site, and on one
page we have PHP outputing we have a URL which says:

href=javascript:top.openHelp('" +
foldersNode[4] + "')><img
src='' border=0></a> <a
class=mainlink href=\"javascript:top.redrawTree("+ foldersNode[5] +",'"+
foldersNode[6] +"','"+ foldersNode[4] +"','"+ foldersNode[3]

And after the Session URL Rewriter gets through with it, we get:

href="javascript:top.openHelp("'" +
foldersNode[4] + "')><img
src='' border=0></a> <a
href="\?sid=47388ff232bb66e8a37d9486502634bf""javascript:top.redrawTree("+ foldersNode[5] +",'"+ foldersNode[6] +"','"+ foldersNode[4] +"','"+ foldersNode[3] +"')\">"+foldersNode[3]+"</a></td></tr>")

And that one throws Javascript errors.
We know we can turn off URL Rewrite on that one page or the entire site, or the entire server, are possibly even use cookies, but it would be nice if it would not attempt to parse it, since it does so incorrectly.


 [2002-09-29 22:14 UTC]
Please try using this CVS snapshot:
For Windows:

 [2002-10-20 23:20 UTC]
No feedback was provided. The bug is being suspended because
we assume that you are no longer experiencing the problem.
If this is not the case and you are able to provide the
information that was requested earlier, please do so and
change the status of the bug back to "Open". Thank you.

