修正测试代码对j这种属性值的转义测试
This commit is contained in:
@@ -156,8 +156,8 @@ describe('test XSS', function () {
|
||||
assert.equal(xss('<IMG SRC=javascript:alert('XSS')>'),
|
||||
'<img src="#">');
|
||||
|
||||
//assert.equal(xss('<IMG SRC=javascript:alert('XSS')>'),
|
||||
// '<img src="F M LEJN ALN !">');
|
||||
assert.equal(xss('<IMG SRC=javascript:alert('XSS')>'),
|
||||
'<img src="#">');
|
||||
|
||||
assert.equal(xss('<IMG SRC=javascript:alert('XSS')>'),
|
||||
'<img src="#">');
|
||||
|
||||
Reference in New Issue
Block a user