commit | f8f046b274e77a303ed902e5515176eac1627750 | [log] [tgz] |
---|---|---|
author | Radu Cotescu <radu@apache.org> | Wed Jan 22 15:54:41 2020 +0100 |
committer | Radu Cotescu <radu@apache.org> | Wed Jan 22 15:54:41 2020 +0100 |
tree | d9df5de8f5accc07704cbbff82a1cb21508d1ec6 | |
parent | acaefc493eca19e3efbfef86fb712bb0db6bb57f [diff] |
SLING-9019 - The XSSFilter will mark URLs containing both escaped characters and HTML entities as invalid * switched from unescaping all XML entities + unicode encoded characters to only unescaping unicode encoded characters
This module is part of the Apache Sling project.
The Apache Sling XSS Bundle provides two services for escaping and filtering XSS-prone user submitted content:
Please check the JavaDoc of each service to find out what methods they provide.