File tree Expand file tree Collapse file tree
Expand file tree Collapse file tree Original file line number Diff line number Diff line change @@ -1039,20 +1039,13 @@ foo[^1] and bar[^2]
10391039func TestRenderLinkDefaultDangerous (t * testing.T ) {
10401040 t .Parallel ()
10411041
1042- /*
1043- Content: <p>Link: <a href="javascript:alert(1)">Click me</a>
1044- AutoLink: <a href="">javascript:alert(1)</a>
1045- Image: <img src="javascript:alert(1)" alt="alt"></p>
1046- */
1047-
10481042 files := `
10491043-- content/p1.md --
10501044---
10511045title: "p1"
10521046---
10531047Link: [Click me](javascript:alert(1))
1054- AutoLink: <javascript:alert(2)>
1055- Image: )
1048+ Image: )
10561049-- layouts/all.html --
10571050Content: {{ .Content }}
10581051`
@@ -1061,7 +1054,6 @@ Content: {{ .Content }}
10611054
10621055 b .AssertFileContent ("public/p1/index.html" ,
10631056 `! alert(1)"` ,
1064- `! href="javascript:alert(2)"` ,
1065- `! alert(3)"` ,
1057+ `! alert(2)"` ,
10661058 )
10671059}
You can’t perform that action at this time.
0 commit comments