diff src/main/java/app/bbs/NetworkJungleBulletinBoard.java @ 175:ac7d1070f449

sanitizing
author tatsuki
date Wed, 30 Jul 2014 22:17:23 +0900
parents e30880a72909
children 6f104ab4eb81
line wrap: on
line diff
--- a/src/main/java/app/bbs/NetworkJungleBulletinBoard.java	Wed Jul 30 17:57:18 2014 +0900
+++ b/src/main/java/app/bbs/NetworkJungleBulletinBoard.java	Wed Jul 30 22:17:23 2014 +0900
@@ -456,6 +456,7 @@
 						path = path.add(Integer.parseInt(_path.substring(count,	count + 1)));
 				}
 			} catch (Exception _e) {
+				System.out.println("屑");
 			}
 			
 			JungleTreeEditor editor = tree.getTreeEditor();
@@ -631,6 +632,18 @@
 		}
 
 	}
+	
+	public String sanitize( String str ) {
+	    if(str==null) {
+	        return str;
+	    }
+	    str = str.replaceAll("&" , "&" );
+	    str = str.replaceAll("<" , "&lt;"  );
+	    str = str.replaceAll(">" , "&gt;"  );
+	    str = str.replaceAll("\"", "&quot;");
+	    str = str.replaceAll("'" , "&#39;" );
+	    return str;
+	 }
 
 
 }