Mercurial > urweb
view tests/cdataF.ur @ 1710:540df112ff62
Remove string-valued style attribute, which may allow injection attacks
author | Adam Chlipala <adam@chlipala.net> |
---|---|
date | Sun, 15 Apr 2012 12:40:53 -0400 |
parents | 71bafe66dbe1 |
children |
line wrap: on
line source
val snippet = fn s => <body> <h1>{cdata s}</h1> </body> val main = fn () => <html><body> {snippet "<Hi."} {snippet "Bye."} </body></html>