eatQuot

From Documentation
Revision as of 09:58, 24 October 2012 by MontyPan (talk | contribs) (Created page with "{{ZUMLReferencePageHeader}} <source lang="java"> java.lang.String eatQuot(java.lang.String) </source> :i.e., <javadoc method="eatQuot(java.lang.String)">org.zkoss.xel.fn.String...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
java.lang.String eatQuot(java.lang.String)
i.e., StringFns.eatQuot(String)

Eliminates single and double quotations to avoid JavaScript injection. It eliminates all quotations. In other words, the specified string shall NOT contain any quotations. It is used to avoid JavaScript injection. For exmple, in DSP or JSP pages, the following codes is better to escape with this method.

<input value="${c:eatQuot(param.some)}"/>

Version History

Last Update : 2012/10/24


Version Date Content
     



Last Update : 2012/10/24

Copyright © Potix Corporation. This article is licensed under GNU Free Documentation License.