xss修改

This commit is contained in:
gucl
2016-03-23 16:00:42 +08:00
parent 49ac8e94dd
commit f5a3917629

View File

@@ -109,6 +109,7 @@ public class XssRequestWrapper extends HttpServletRequestWrapper {
String str = StringEscapeUtils.escapeHtml(cr.getCleanHTML());
str = str.replaceAll((antiSamy.scan(" ", policy)).getCleanHTML(), "");
str = StringEscapeUtils.unescapeHtml(str);
str = str.replaceAll(""", "\"");
log.info("xssfilter value after xssClean" + str);
return str;
}