diff test/test_cgi.py @ 5805:39a5f40ae4d4

Extra test of < and > inside quotes.
author John Rouillard <rouilj@ieee.org>
date Wed, 12 Jun 2019 17:26:19 -0400
parents 95a366d46065
children bd6d41f21a5a
line wrap: on
line diff
--- a/test/test_cgi.py	Wed Jun 12 17:26:02 2019 -0400
+++ b/test/test_cgi.py	Wed Jun 12 17:26:19 2019 -0400
@@ -60,6 +60,8 @@
             ['&lt;&lt;script &gt;&gt;alert(42);5&lt;&lt;/script &gt;&gt;'])
         self.assertEqual(cm([],'<a href="y">x</a>'),
             ['&lt;a href="y"&gt;x&lt;/a&gt;'])
+        self.assertEqual(cm([],'<a href="<y>">x</a>'),
+            ['&lt;a href="&lt;y&gt;"&gt;x&lt;/a&gt;'])
         self.assertEqual(cm([],'<A HREF="y">x</A>'),
             ['&lt;A HREF="y"&gt;x&lt;/A&gt;'])
         self.assertEqual(cm([],'<br>x<br />'), ['&lt;br&gt;x&lt;br /&gt;'])

Roundup Issue Tracker: http://roundup-tracker.org/