Lack of example escaping special characters in struts2

Posted by Dewfy on Stack Overflow See other posts from Stack Overflow or by Dewfy
Published on 2010-04-15T09:59:45Z Indexed on 2010/04/15 10:03 UTC
Read the original article Hit count: 382

Filed under:
|
|

Hello colleagues!

Googling today I couldn't found sample or mentioning of best practice: how to escape user input in Struts2. Of course I can manually convert characters on validate() method, but it looks too obvious. So may be exists some automation to avoid code/script injection?

© Stack Overflow or respective owner

Related posts about struts2

Related posts about code-injection