OWASP/java-html-sanitizer
Takes third-party HTML and produces HTML that is safe to embed in your web application. Fast and easy to configure.
JavaNOASSERTION
Issues
- 6
- 1
Java8 Fallback is not working
#349 opened by katta524 - 1
How to add new possible values(props) for existing DEFAULT css properties.
#264 opened by lakshmisagar-as - 1
CVE-2011-4457
#348 opened by gulcher - 1
- 2
Issue in 2024x version with styles
#331 opened by subbudvk - 0
"×" word in html changes to ×
#345 opened by kkiro-coder - 0
Issue with HTML Sanitization: Improper Handling of <div> Tag Inside <table>
#342 opened by sumitkumar1110 - 0
- 0
text-align literals are outdated
#340 opened by DeepSnowNeeL - 1
Clarify which BSD license applies
#271 opened by lcoller - 1
Licensing issue: BSD-3-Clause or BSD-2-Clause?
#288 opened by stefan-hdt - 0
- 0
rel attributes are reordered in 20220608.1
#336 opened by damianszczepanik - 0
Issues encountered while processing <a> tags
#333 opened by hw30026125 - 0
Question: What means Recognize foreign content syntactic context: mathml / svg?
#332 opened by RyosukeFukatani - 1
Release 20240325 cannot be transpiled
#330 opened by chris-moon - 13
Guava removal breaks compatibility (with JDK9)
#301 opened by csware - 3
Sanitizing CSS
#323 opened by subbudvk - 4
Encoding malicious code instead of removing it
#298 opened by bmscodespace - 4
noopener noreferrer getting added every time even if "noopener noreferrer" already exist
#280 opened by anupamamanish - 3
Vulnerable dependency guava:30.1.jre
#286 opened by aschufft - 2
- 0
- 1
Html sanitizer repeatedly adds rel="noopener noreferrer" even if it's pre-exist
#306 opened by anudhuri23 - 0
Index out of bound when empty list is passed to `allowAttributes(...).globally()`
#300 opened by 1003n40 - 1
Remove malicious code from svg content
#296 opened by mantri-mounika - 2
- 0
- 6
- 1
bug: closing tag for </html> misplaced
#285 opened by woodpexer - 1
Stroke and stroke-width are considered invalid
#265 opened by mb34890 - 1
- 0
Behaviour with malformed HTML Input
#278 opened by subbudvk - 0
Issue while disallowing attributes matching pattern
#292 opened by subbudvk - 0
- 3
- 1
org.springframework.web.multipart.support.MissingServletRequestPartException: Required request part 'issueModel' is not present
#281 opened by bhargavivuttaravilli123 - 0
- 0
Question: How to not escape characters in plain text
#269 opened by kennytv - 0
independent attribute auto add value
#277 opened by iloveuaa - 0
- 0
Encoding.encodeHtmlAttribOnto visibility
#273 opened by ihass - 1
Sanitizing embedded css classes
#268 opened by ragcrix - 0
Incorrect escaping for inline svg+xml data image
#270 opened by brsyuksel - 3
Stripping off the contents when the extra comment tag has added with never ending
#258 opened by rupeshtelus - 0
tel URIs: Incorrect escaping due to missing RFC 3966 "tel:" URI syntax support/parsing
#263 opened by jmiserez - 2
- 0
- 1
Content after script tag completely deleted?
#257 opened by spyro2000