Shiva6780 / owaspantisamy

Automatically exported from code.google.com/p/owaspantisamy
0 stars 0 forks source link

why change & q u o t; into " ? #60

Closed GoogleCodeExporter closed 8 years ago

GoogleCodeExporter commented 8 years ago
saxscaner change &quoto into " ,why? is necessary?

Original issue reported on code.google.com by mmsss...@gmail.com on 28 Oct 2009 at 10:44

GoogleCodeExporter commented 8 years ago
I have similar issue, but the other way around.

pass a string "hello" (notice hello has surrounding double quotes, so the string
actually is " + h + e + l + l + o + ")

However, after execution of AntiSamyDOMScanner.scan(String html, String
inputEncoding, String outputEncoding), the CleanResult, returns the clean html 
as
"e;hello"e;

How can I avoid this? Some directive that goes in the policy file?

Still debugging this as to why it is happening - but hoping for a quick 
response !

Original comment by nodever...@gmail.com on 30 Oct 2009 at 1:40

GoogleCodeExporter commented 8 years ago
You'll be more likely to get a response if you include all relevant 
information, like
which version of AntiSamy, policy file in use, a test case, etc.

Original comment by arshan.d...@gmail.com on 7 Nov 2009 at 8:11

GoogleCodeExporter commented 8 years ago
Submit more info and we'll re-open this up.

Original comment by arshan.d...@gmail.com on 8 Mar 2010 at 4:39

GoogleCodeExporter commented 8 years ago
[deleted comment]
GoogleCodeExporter commented 8 years ago
I'm seeing the same behaviour as Comment 1 with AntiSamy 1.4.4, even with 
antisamy-anythinggoes-1.4.4.xml (and also antisamy-tinymce-1.4.4.xml).

Original comment by donnch...@gmail.com on 14 May 2011 at 12:14

GoogleCodeExporter commented 8 years ago
 "o into " having same problem with antisamy-1.5.1.jar

Original comment by appyg...@gmail.com on 21 Aug 2013 at 1:11