Beefy Boxes and Bandwidth Generously Provided by pair Networks
Come for the quick hacks, stay for the epiphanies.
 
PerlMonks  

Re: Input Validation and pattern matching in Template Toolkit

by nikosv (Deacon)
on Jun 20, 2018 at 20:45 UTC ( [id://1217063]=note: print w/replies, xml ) Need Help??


in reply to Input Validation and pattern matching in Template Toolkit

There's just too many Context/attack vectors for the the template to handle;there's the CSS context,the Javascript,the URL, the HTML, the JSON...The Perl counterpart,which I don't know what that would be, of an anti-XSS library such as Coverity's is recommended.

For example,have a look at the various escapers offered by this library:
https://coverity.github.io/coverity-security-library/com/coverity/security/Escape.html
  • Comment on Re: Input Validation and pattern matching in Template Toolkit

Log In?
Username:
Password:

What's my password?
Create A New User
Domain Nodelet?
Node Status?
node history
Node Type: note [id://1217063]
help
Chatterbox?
and the web crawler heard nothing...

How do I use this?Last hourOther CB clients
Other Users?
Others rifling through the Monastery: (4)
As of 2024-04-24 03:26 GMT
Sections?
Information?
Find Nodes?
Leftovers?
    Voting Booth?

    No recent polls found