Skip to content

Commit 708cb32

Browse files
author
chrisisbeef
committed
Updating test to reflect new assumption that '*' is valid character in url parameters
1 parent 0635893 commit 708cb32

1 file changed

Lines changed: 2 additions & 1 deletion

File tree

src/test/java/org/owasp/esapi/reference/ValidatorTest.java

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -425,7 +425,8 @@ public void testisValidInput() {
425425
assertFalse(instance.isValidInput("test", "test", "SSN", 100, false));
426426
assertTrue(instance.isValidInput("test", "jeffWILLIAMS123", "HTTPParameterValue", 100, false));
427427
assertTrue(instance.isValidInput("test", "jeff .-/+=@_ WILLIAMS", "HTTPParameterValue", 100, false));
428-
assertFalse(instance.isValidInput("test", "jeff*WILLIAMS", "HTTPParameterValue", 100, false));
428+
// Removed per Issue 116 - The '*' character is valid as a parameter character
429+
// assertFalse(instance.isValidInput("test", "jeff*WILLIAMS", "HTTPParameterValue", 100, false));
429430
assertFalse(instance.isValidInput("test", "jeff^WILLIAMS", "HTTPParameterValue", 100, false));
430431
assertFalse(instance.isValidInput("test", "jeff\\WILLIAMS", "HTTPParameterValue", 100, false));
431432

0 commit comments

Comments
 (0)