diff --git a/CHANGELOG.md b/CHANGELOG.md index 7f9951f..69ee77f 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -1,5 +1,8 @@ # CHANGELOG +## 7.0.1 +- Improve sanitation of HTML Entities + ## 7.0.0 - Move constant declarations from index file to `constants.ts` file diff --git a/src/__tests__/index.test.ts b/src/__tests__/index.test.ts index c6a4e26..c1e37b1 100644 --- a/src/__tests__/index.test.ts +++ b/src/__tests__/index.test.ts @@ -111,6 +111,11 @@ describe("sanitizeUrl", () => { "javasc&#\u0000x09;ript:alert(1)", "java&NewLine&newline;;script:alert('XSS')", "java&NewLine&newline;;script:alert('XSS')", + // "javascrip\164t:alert()", + // "javascrip\nt:alert()", + // "javascrip\rt:alert()", + "%6Aavascript:alert()" + // "javascrip0x2f0x6et:alert()" ]; attackVectors.forEach((vector) => {