Skip to content

Task #4: Incorrect Result #3

@ghost

Description

$html="<div><p align='left' onclick='alert(1)'>sample <b><i>text</i></b><script type='text/javascript'>alert(2);</script></p></div>";
$allowed=array('b', 'p' => array('align'));
print sanitize($html,$allowed)."\n";

Expected: <p align="left">sample <b>text</b></p>
Actual: <p align="left">sample <b>text</b>alert(2);</p>

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions