Simon Willison’s Weblog

Items tagged rails, security, xss in Mar

Filters: Month: Mar × rails × security × xss ×


XSS. Sanitising HTML is an extremely hard problem. The sanitize helper that ships with Rails is completely broken; Jacques Distler provides a better alternative. # 12th March 2007, 12:34 am

Types

Years

Tags