Skip to content
Sections
>> Trisquel >> Paquets >> aramo >> perl >> libhtml-defang-perl
etiona  ] [  nabia  ] [  aramo  ]
[ Paquet source : libhtml-defang-perl  ]

Paquet : libhtml-defang-perl (1.07-1)

cleans HTML and CSS of scripting, executable contents and XSS attacks

HTML::Defang accepts an input HTML and/or CSS string and removes any executable code including scripting, embedded objects, applets, etc., and neutralises any XSS attacks. A whitelist based approach is used which means only HTML known to be safe is allowed through.

HTML::Defang uses a custom html tag parser. The parser has been designed and tested to work with nasty real world html and to try and emulate as close as possible what browsers actually do with strange looking constructs. The test suite has been built based on examples from a range of sources such as <http://ha.ckers.org/xss.html> and <http://imfo.ru/csstest/css_hacks/import.php> to ensure that as many as possible XSS attack scenarios have been dealt with.

Autres paquets associés à libhtml-defang-perl

  • dépendances
  • recommandations
  • suggestions
  • dep: perl
    Larry Wall's Practical Extraction and Report Language

Télécharger libhtml-defang-perl

Télécharger pour toutes les architectures proposées
Architecture Taille du paquet Espace occupé une fois installé Fichiers
all 31,5 ko99 ko [liste des fichiers]