Welcome! » Log In » Create A New Profile

<script>alert(document.cookie)</script>

Posted by seoz 
<script>alert(document.cookie)</script>
May 28, 2011 09:37PM

HTML pufifier not supported this string

/script/alert(document.cookie)//script/

If i've post this string with HTML Pufifier i do watch error on my php-page.

Re: <script>alert(document.cookie)</script>
May 29, 2011 05:13AM

If you mean "not support" as in "stripped out", yes, that's intended behavior. If not, could you describe in more detail?

ad
Re: <script>alert(document.cookie)</script>
January 21, 2013 06:48AM

fads

Author:
Your Email:

Subject:

HTML input is enabled. Make sure you escape all HTML and angled brackets with &lt; and &gt;.

Auto-paragraphing is enabled. Double newlines will be converted to paragraphs; for single newlines, use the pre tag.

Allowed tags: a, abbr, acronym, b, blockquote, caption, cite, code, dd, del, dfn, div, dl, dt, em, i, ins, kbd, li, ol, p, pre, s, strike, strong, sub, sup, table, tbody, td, tfoot, th, thead, tr, tt, u, ul, var.

For inputting literal code such as HTML and PHP for display, use CDATA tags to auto-escape your angled brackets, and pre to preserve newlines:

<pre><![CDATA[
Place code here
]]></pre>

Power users, you can hide this notice with:

.htmlpurifier-help {display:none;}

Message: