Skip to content
Sections
>> Trisquel >> Packages >> aramo >> perl >> libhtml-defang-perl
etiona  ] [  nabia  ] [  aramo  ]
[ Source: libhtml-defang-perl  ]

Package: libhtml-defang-perl (1.07-1)

cleans HTML and CSS of scripting, executable contents and XSS attacks

HTML::Defang accepts an input HTML and/or CSS string and removes any executable code including scripting, embedded objects, applets, etc., and neutralises any XSS attacks. A whitelist based approach is used which means only HTML known to be safe is allowed through.

HTML::Defang uses a custom html tag parser. The parser has been designed and tested to work with nasty real world html and to try and emulate as close as possible what browsers actually do with strange looking constructs. The test suite has been built based on examples from a range of sources such as <http://ha.ckers.org/xss.html> and <http://imfo.ru/csstest/css_hacks/import.php> to ensure that as many as possible XSS attack scenarios have been dealt with.

Other Packages Related to libhtml-defang-perl

  • depends
  • recommends
  • suggests
  • dep: perl
    Larry Wall's Practical Extraction and Report Language

Download libhtml-defang-perl

Download for all available architectures
Architecture Package Size Installed Size Files
all 31.5 kB99 kB [list of files]