diff options
author | Andrey Andreev <narf@devilix.net> | 2015-09-11 14:21:10 +0200 |
---|---|---|
committer | Andrey Andreev <narf@devilix.net> | 2015-09-11 14:21:10 +0200 |
commit | 2f71c625b8d9ed7efc34b2139695702d6a08f6be (patch) | |
tree | 983967ee5a0b7d4f8d1cbfd7bf6ed5ace71a39af /tests | |
parent | 58c7bcb85c1a354e1eaebae8ef658516f427378d (diff) |
Improve on previous commit
Diffstat (limited to 'tests')
-rw-r--r-- | tests/codeigniter/core/Security_test.php | 5 |
1 files changed, 5 insertions, 0 deletions
diff --git a/tests/codeigniter/core/Security_test.php b/tests/codeigniter/core/Security_test.php index ed0838474..d09128053 100644 --- a/tests/codeigniter/core/Security_test.php +++ b/tests/codeigniter/core/Security_test.php @@ -164,6 +164,11 @@ class Security_test extends CI_TestCase { '<img src="on=\'">"<svg> onerror=alert(1) onmouseover=alert(1)>', $this->security->remove_evil_attributes('<img src="on=\'">"<svg> onerror=alert(1) onmouseover=alert(1)>', FALSE) ); + + $this->assertEquals( + '<img src="x"> on=\'x\' onerror=``,alert(1)>', + $this->security->remove_evil_attributes('<img src="x"> on=\'x\' onerror=``,alert(1)>', FALSE) + ); } // -------------------------------------------------------------------- |