试过了, 能把 [[[[[[[[[@snoopy](/user/snoopy)](/user/snoopy)](/user/snoopy)](/user/snoopy)](/user/snoopy)](/user/snoopy)](/user/snoopy)](/user/snoopy)](/user/snoopy) 的关于cnodejs官网的XSS和CSRF里的“传送门”链接完美过滤掉,而不破坏文章的正常格式代码。这不就实现了反XSS吗?
9 回复
试过了, 能把 [[[[[[[[[@snoopy](/user/snoopy)](/user/snoopy)](/user/snoopy)](/user/snoopy)](/user/snoopy)](/user/snoopy)](/user/snoopy)](/user/snoopy)](/user/snoopy) 的关于cnodejs官网的XSS和CSRF里的“传送门”链接完美过滤掉,而不破坏文章的正常格式代码。这不就实现了反XSS吗?