A fast and easy to configure HTML Sanitizer written in Java which lets you include HTML authored by third-parties in your web application while protecting against XSS. The existing dependency is on ...
ESAPI config file is in properties format, which makes sense for a Java application but if it was in XML, it might be possible to port it to applications in .NET, Cold Fusion, etc. So baseline ...