Skip to content
Sections
>> Trisquel >> 套件 >> etiona >> perl >> libhtml-defang-perl
etiona  ] [  nabia  ] [  aramo  ]
[ 原始碼: libhtml-defang-perl  ]

套件: libhtml-defang-perl (1.04-4)

cleans HTML and CSS of scripting, executable contents and XSS attacks

HTML::Defang accepts an input HTML and/or CSS string and removes any executable code including scripting, embedded objects, applets, etc., and neutralises any XSS attacks. A whitelist based approach is used which means only HTML known to be safe is allowed through.

HTML::Defang uses a custom html tag parser. The parser has been designed and tested to work with nasty real world html and to try and emulate as close as possible what browsers actually do with strange looking constructs. The test suite has been built based on examples from a range of sources such as <http://ha.ckers.org/xss.html> and <http://imfo.ru/csstest/css_hacks/import.php> to ensure that as many as possible XSS attack scenarios have been dealt with.

其他與 libhtml-defang-perl 有關的套件

  • 依賴
  • 推薦
  • 建議
  • dep: perl
    Larry Wall's Practical Extraction and Report Language

下載 libhtml-defang-perl

下載可用於所有硬體架構的
硬體架構 套件大小 安裝後大小 檔案
all 29.4 kB98 kB [文件列表]