we need test coverage for common XSS vectors

Registered by dan mackinlay

an XSS vector test-suit needs to be created to test our sanitizer. Should be based on, say, examples in RSnakes excellent write-up http://ha.ckers.org/xss.html, or the whitelist of elements from a PHP-based sibled HTMLPurifier (http://wiki.whatwg.org/wiki/Sanitization_rules)

Blueprint information

Status:
Not started
Approver:
None
Priority:
Undefined
Drafter:
None
Direction:
Needs approval
Assignee:
None
Definition:
New
Series goal:
None
Implementation:
Unknown
Milestone target:
None

Related branches

Sprints

Whiteboard

(?)

Work Items

This blueprint contains Public information 
Everyone can see this information.

Subscribers

No subscribers.