3. å¾æ¥ã®ãã³ãã¬ã¼ãã¨ã³ã¸ã³ ï®å¾æ¥ã®ãã³ãã¬ã¼ãï¼æåã¨ã¹ã±ã¼ã ï®<?php echo htmlspecialchars($var) ?> ï®XSSã®æ¸©åºï¼ã¨ã¹ã±ã¼ãæ¼ãï¼ 2010å¹´10æ26æ¥ XSSã«å¼·ãã¦ã§ããµã¤ããä½ã - ãã³ãã¬ã¼ãã¨ã³ã¸ã³ã®é¸å®åºæºã¨ã¹ããããã®çæææ³ 3 4. å¾æ¥ã®ãã³ãã¬ã¼ãã¨ã³ã¸ã³ (2) ï®ä»£æ¿ææ³ï¼å¸¸ã«ã¨ã¹ã±ã¼ã ï®Smarty ã® default:modifiers ç ï®åé¡ï¼ï¼éã«ã¨ã¹ã±ã¼ããã¦ãã¾ã ï®çµå±æµè¡ããªãã£ã 2010å¹´10æ26æ¥ XSSã«å¼·ãã¦ã§ããµã¤ããä½ã - ãã³ãã¬ã¼ãã¨ã³ã¸ã³ã®é¸å®åºæºã¨ã¹ããããã®çæææ³ 4 5. èªåã¨ã¹ã±ã¼ãã®ç»å ´ ï®åºæ¬ã¯å¸¸ã«ã¨ã¹ã±ã¼ã ï®ãã ããã¨ã¹ã±ã¼ãæ¸ãã©ãããåã§å¤å® $var = '>_<'; <?= $var ?> => >_< ï®åæ å ±ãããããï¼é
{{#tags}}- {{label}}
{{/tags}}