Beefy Boxes and Bandwidth Generously Provided by pair Networks
Keep It Simple, Stupid

Re^2: Best Module for Cross-Site Scripting ?

by larryl (Scribe)
on Aug 19, 2010 at 18:41 UTC ( #856100=note: print w/replies, xml ) Need Help??

in reply to Re: Best Module for Cross-Site Scripting ?
in thread Best Module for Cross-Site Scripting ?

I have also had very good experience with HTML::Scrubber. I use it entirely in "whitelist mode", so only the tags I want come through, and for those tags, only the attributes I want on them come through.

One small drawback is that it does not check for the HTML being well-formed, e.g. if you send it HTML snippets with missing closing tags, those will come through as-is.


  • Comment on Re^2: Best Module for Cross-Site Scripting ?

Log In?

What's my password?
Create A New User
Node Status?
node history
Node Type: note [id://856100]
and the web crawler heard nothing...

How do I use this? | Other CB clients
Other Users?
Others having an uproarious good time at the Monastery: (3)
As of 2016-10-23 01:58 GMT
Find Nodes?
    Voting Booth?
    How many different varieties (color, size, etc) of socks do you have in your sock drawer?

    Results (299 votes). Check out past polls.