123456789_123456789_123456789_123456789_123456789_

Module: ActionView::Helpers::ContentExfiltrationPreventionHelper

Constant Summary

  • CLOSE_CDATA_COMMENT =

    Close any open tags that support CDATA (textarea, xmp) before each form tag. This prevents attackers from injecting unclosed tags that could capture form contents.

    For example, an attacker might inject:

    or the end of the document would be captured by the attacker's