OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Existing XSS filters

From: Ulf Harnhammar (metauroperamail.com)
Date: Fri Jun 20 2003 - 13:50:18 CDT


Here are the existing stand-alone open-source XSS filters that I know of:

kses (me, Ulf Harnhammar)
PHP
http://sourceforge.net/projects/kses

XSS filter for PHP4 - the filter from Squirrelmail (Konstantin Riabitsev)
PHP
http://www.mricon.com/html/phpfilter.html

HTML::StripScripts and related CPAN modules (Nick Cleaton)
Perl
http://search.cpan.org/author/NCLEATON/HTML-StripScripts-0.01/StripScripts.pm

There are also a lot of people who's written some kind of XSS filter specifically for their project. Some of them are better than others.

Please reply if you know about any other stand-alone, open-source filters.

// Ulf Harnhammar

--
____________________________________________
http://www.operamail.com
Get OperaMail Premium today - USD 29.99/year

Powered by Outblaze