mirror of
https://github.com/ezyang/htmlpurifier.git
synced 2025-01-05 14:11:52 +00:00
49cb2a4a7c
# Invalid images are now removed, rather than replaced with a dud <img src="" alt="Invalid image" />. Previous behavior can be restored with new directive %Core.RemoveInvalidImg set to false. ! New directives %URI.DisableExternalResources and %URI.DisableResources ! New directive %Attr.DisableURI, which eliminates all hyperlinking - Missing "Available since" documentation added git-svn-id: http://htmlpurifier.org/svnroot/htmlpurifier/trunk@575 48356398-32a2-884e-a903-53898d9a118a
74 lines
2.0 KiB
PHP
74 lines
2.0 KiB
PHP
<?php
|
|
|
|
require_once 'HTMLPurifier.php';
|
|
|
|
// integration test
|
|
|
|
class HTMLPurifier_Test extends UnitTestCase
|
|
{
|
|
var $purifier;
|
|
|
|
function setUp() {
|
|
$this->purifier = new HTMLPurifier();
|
|
}
|
|
|
|
function assertPurification($input, $expect = null) {
|
|
if ($expect === null) $expect = $input;
|
|
$result = $this->purifier->purify($input);
|
|
$this->assertIdentical($expect, $result);
|
|
}
|
|
|
|
function testNull() {
|
|
$this->assertPurification("Null byte\0", "Null byte");
|
|
}
|
|
|
|
function testStrict() {
|
|
$config = HTMLPurifier_Config::createDefault();
|
|
$config->set('HTML', 'Strict', true);
|
|
$this->purifier = new HTMLPurifier($config);
|
|
|
|
$this->assertPurification(
|
|
'<u>Illegal underline</u>',
|
|
'Illegal underline'
|
|
);
|
|
|
|
$this->assertPurification(
|
|
'<blockquote>Illegal contents</blockquote>',
|
|
'<blockquote><p>Illegal contents</p></blockquote>'
|
|
);
|
|
|
|
}
|
|
|
|
function testDifferentAllowedElements() {
|
|
$config = HTMLPurifier_Config::createDefault();
|
|
$config->set('HTML', 'AllowedElements', array('b', 'i', 'p', 'a'));
|
|
$config->set('HTML', 'AllowedAttributes', array('a.href', '*.id'));
|
|
$this->purifier = new HTMLPurifier($config);
|
|
|
|
$this->assertPurification(
|
|
'<p>Par.</p><p>Para<a href="http://google.com/">gr</a>aph</p>Text<b>Bol<i>d</i></b>'
|
|
);
|
|
|
|
$this->assertPurification(
|
|
'<span>Not allowed</span><a class="mef" id="foobar">Foobar</a>',
|
|
'Not allowed<a>Foobar</a>' // no ID!!!
|
|
);
|
|
|
|
}
|
|
|
|
function testDisableURI() {
|
|
|
|
$config = HTMLPurifier_Config::createDefault();
|
|
$config->set('Attr', 'DisableURI', true);
|
|
$this->purifier = new HTMLPurifier($config);
|
|
|
|
$this->assertPurification(
|
|
'<img src="foobar"/>',
|
|
''
|
|
);
|
|
|
|
}
|
|
|
|
}
|
|
|
|
?>
|