@@ -279,6 +279,9 RAW | |||
|
279 | 279 | "<pre class='foo bar'>some text</pre>" => "<pre class='foo bar'>some text</pre>", |
|
280 | 280 | '<pre class="foo bar">some text</pre>' => '<pre class="foo bar">some text</pre>', |
|
281 | 281 | "<pre onmouseover='alert(1)'>some text</pre>" => "<pre>some text</pre>", |
|
282 | # xss | |
|
283 | '<pre><code class=""onmouseover="alert(1)">text</code></pre>' => '<pre><code>text</code></pre>', | |
|
284 | '<pre class=""onmouseover="alert(1)">text</pre>' => '<pre>text</pre>', | |
|
282 | 285 | } |
|
283 | 286 | to_test.each { |text, result| assert_equal result, textilizable(text) } |
|
284 | 287 | end |
General Comments 0
You need to be logged in to leave comments.
Login now