Simon Willison’s Weblog

Subscribe

1 item tagged “jacques-distler”

2007

XSS. Sanitising HTML is an extremely hard problem. The sanitize helper that ships with Rails is completely broken; Jacques Distler provides a better alternative.

# 12th March 2007, 12:34 am / jacques-distler, rails, security, xss