From c3b5cb20d847f24cd7c2545c65ab01c88767aaf3 Mon Sep 17 00:00:00 2001
From: 若依 <yzz_ivy@163.com>
Date: Wed, 10 Jun 2020 22:04:51 +0800
Subject: [PATCH] !25 Live轻量级PR Merge pull request !25 from Live/live
---
ruoyi/src/main/java/com/ruoyi/common/utils/html/EscapeUtil.java | 4 ++--
1 files changed, 2 insertions(+), 2 deletions(-)
diff --git a/ruoyi/src/main/java/com/ruoyi/common/utils/html/EscapeUtil.java b/ruoyi/src/main/java/com/ruoyi/common/utils/html/EscapeUtil.java
index f6754c4..8989ca1 100644
--- a/ruoyi/src/main/java/com/ruoyi/common/utils/html/EscapeUtil.java
+++ b/ruoyi/src/main/java/com/ruoyi/common/utils/html/EscapeUtil.java
@@ -58,7 +58,7 @@
*/
public static String clean(String content)
{
- return content.replaceAll(RE_HTML_MARK, "");
+ return new HTMLFilter().filter(content);
}
/**
@@ -144,7 +144,7 @@
public static void main(String[] args)
{
- String html = "<script>alert(1);</script>";
+ String html = "alert('11111');";
System.out.println(EscapeUtil.clean(html));
System.out.println(EscapeUtil.escape(html));
System.out.println(EscapeUtil.unescape(html));
--
Gitblit v1.9.2