blob: 9c7e69aa1c411c3faea4f5da8416e7b1e783f282 (
plain)
1
2
3
4
5
6
7
|
Description: entry content contains script (inline)
Expect: not bozo and entries[0]['content'][0]['value'] == u'<div>safe description</div>'
Options:
<div xmlns="http://www.w3.org/1999/xhtml">safe<script type="text/javascript">location.href='http:/'+'/example.com/';</script> description</div>
----------
<div>safe description</div>
|