Closed GoogleCodeExporter closed 8 years ago
I'm afraid the tool was incorrect. The payload given won't execute without
further self-destructive code on the client or server. AntiSamy goes to great
lengths to allow you to use those "control" characters without subjecting you
to XSS risk.
Original comment by arshan.d...@gmail.com
on 15 Nov 2010 at 9:49
Original issue reported on code.google.com by
radhakri...@gmail.com
on 13 Oct 2010 at 12:13