Package de.hybris.platform.security.impl
Class DefaultXssEncodeService
- java.lang.Object
-
- de.hybris.platform.security.impl.DefaultXssEncodeService
-
- All Implemented Interfaces:
XssEncodeService
public class DefaultXssEncodeService extends java.lang.Object implements XssEncodeService
Default implementation ofXssEncodeService
-
-
Constructor Summary
Constructors Constructor Description DefaultXssEncodeService()
-
Method Summary
All Methods Instance Methods Concrete Methods Modifier and Type Method Description java.lang.StringencodeHtml(java.lang.String input)Encodes input HTML to be XSS-safe code
-
-
-
Method Detail
-
encodeHtml
public java.lang.String encodeHtml(java.lang.String input)
Description copied from interface:XssEncodeServiceEncodes input HTML to be XSS-safe code- Specified by:
encodeHtmlin interfaceXssEncodeService- Parameters:
input- untrusted HTML-string to clear it- Returns:
- a safe (w/o potential XSS vulnerabilities) representation of the HTML
-
-