Commit 14f84fd
committed
Recognize that
Rather than mucking with `<style>` tag content in all cases, this is a more
tailored fix to the recent vulnerability that just closes `<style>` elements
when we realize they're in a dodgy parsing context.<style> is not really workable inside <select>
1 parent e2b29e8 commit 14f84fd
File tree
4 files changed
+47
-39
lines changed- src
- main/java/org/owasp/html
- test/java/org/owasp/html
4 files changed
+47
-39
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
254 | 254 | | |
255 | 255 | | |
256 | 256 | | |
257 | | - | |
258 | | - | |
259 | | - | |
260 | | - | |
261 | | - | |
262 | | - | |
263 | | - | |
264 | | - | |
265 | | - | |
266 | | - | |
267 | | - | |
268 | | - | |
269 | | - | |
270 | | - | |
271 | | - | |
272 | 257 | | |
273 | | - | |
274 | 258 | | |
275 | | - | |
276 | 259 | | |
277 | 260 | | |
278 | 261 | | |
| |||
457 | 440 | | |
458 | 441 | | |
459 | 442 | | |
460 | | - | |
461 | | - | |
462 | | - | |
463 | | - | |
464 | 443 | | |
Lines changed: 20 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
217 | 217 | | |
218 | 218 | | |
219 | 219 | | |
| 220 | + | |
| 221 | + | |
| 222 | + | |
| 223 | + | |
| 224 | + | |
| 225 | + | |
| 226 | + | |
| 227 | + | |
| 228 | + | |
220 | 229 | | |
221 | 230 | | |
222 | 231 | | |
| |||
363 | 372 | | |
364 | 373 | | |
365 | 374 | | |
| 375 | + | |
| 376 | + | |
| 377 | + | |
| 378 | + | |
| 379 | + | |
| 380 | + | |
| 381 | + | |
| 382 | + | |
| 383 | + | |
| 384 | + | |
| 385 | + | |
366 | 386 | | |
367 | 387 | | |
368 | 388 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
439 | 439 | | |
440 | 440 | | |
441 | 441 | | |
442 | | - | |
443 | | - | |
444 | | - | |
445 | | - | |
446 | | - | |
| 442 | + | |
447 | 443 | | |
448 | 444 | | |
449 | 445 | | |
450 | 446 | | |
451 | 447 | | |
452 | 448 | | |
453 | 449 | | |
454 | | - | |
| 450 | + | |
455 | 451 | | |
456 | 452 | | |
457 | | - | |
| 453 | + | |
458 | 454 | | |
459 | | - | |
460 | | - | |
461 | | - | |
462 | | - | |
463 | | - | |
| 455 | + | |
464 | 456 | | |
465 | 457 | | |
466 | 458 | | |
467 | 459 | | |
468 | 460 | | |
469 | 461 | | |
| 462 | + | |
470 | 463 | | |
471 | 464 | | |
472 | 465 | | |
473 | | - | |
| 466 | + | |
474 | 467 | | |
475 | 468 | | |
476 | 469 | | |
477 | | - | |
478 | | - | |
| 470 | + | |
| 471 | + | |
479 | 472 | | |
480 | 473 | | |
481 | 474 | | |
482 | 475 | | |
483 | 476 | | |
| 477 | + | |
| 478 | + | |
| 479 | + | |
| 480 | + | |
| 481 | + | |
| 482 | + | |
| 483 | + | |
| 484 | + | |
| 485 | + | |
| 486 | + | |
| 487 | + | |
| 488 | + | |
| 489 | + | |
| 490 | + | |
| 491 | + | |
| 492 | + | |
484 | 493 | | |
485 | 494 | | |
486 | 495 | | |
| |||
Lines changed: 3 additions & 3 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
158 | 158 | | |
159 | 159 | | |
160 | 160 | | |
161 | | - | |
162 | | - | |
163 | | - | |
| 161 | + | |
| 162 | + | |
| 163 | + | |
164 | 164 | | |
165 | 165 | | |
166 | 166 | | |
| |||
0 commit comments