PHP Extension Repository is a modern mirror of PECL website with Windows pre-build.
pecl
install taint
XSS code sniffer
An extension used for detecting XSS codes(tainted string),
And also can be used to spot sql injection vulnerabilities, shell inject, etc.
Stars: | 602 |
Issue openned: | 21 |
Downloads: | 137643 |
- Support more functions(strstr, substr, str_replace etc)
- Fixed Bug that tainted info lost if string is parsed by htmlspecialchars
- Trigger warning when doing dim assign concat