Lines Matching defs:html
25 package org.owasp.html;
92 private static String sanitize(String html) {
95 HtmlSanitizer.sanitize(html, makePolicy(sb));
164 String html = out.toString();
166 System.out.println("About to scan: " + url + " size: " + html.length());
167 if (html.length() > 640000) {
177 sanitize(html);
215 assertSanitizedDoesNotContain("<iframe src=http://ha.ckers.org/scriptlet.html <", "<iframe");
216 assertSanitizedDoesNotContain("<iframe src=http://ha.ckers.org/scriptlet.html <", "<iframe");
287 assertSanitizedDoesNotContain("<META HTTP-EQUIV=\"refresh\" CONTENT=\"0;url=data:text/html;base64,PHNjcmlwdD5hbGVydCgnWFNTJyk8L3NjcmlwdD4K\">", "<meta");
288 assertSanitizedDoesNotContain("<META HTTP-EQUIV=\"refresh\" CONTENT=\"0;url=data:text/html;base64,PHNjcmlwdD5hbGVydCgnWFNTJyk8L3NjcmlwdD4K\">", "<meta");
320 assertSanitizedDoesNotContain("<OBJECT TYPE=\"text/x-scriptlet\" DATA=\"http://ha.ckers.org/scriptlet.html\"></OBJECT>", "<object");
321 assertSanitizedDoesNotContain("<OBJECT TYPE=\"text/x-scriptlet\" DATA=\"http://ha.ckers.org/scriptlet.html\"></OBJECT>", "<object");
774 String html, String dangerousContent) {
775 String sanitized = sanitize(html);
779 "`" + sanitized + "` from `" + html + "` contains `" +
785 String html, String dangerousContent) {
786 String sanitized = sanitize(html);
790 "`" + sanitized + "` from `" + html + "` does not contain `" +
795 private static void assertSanitized(String html, String sanitized) {
796 assertEquals(sanitized, sanitize(html));