From edc40521a3517bd016b262d933ca9812c45ba72e Mon Sep 17 00:00:00 2001 From: Andreas Dangel Date: Sat, 16 May 2020 13:11:11 +0200 Subject: [PATCH] [visualforce] Cleanup rule test xml files Avoid unnecessary CDATA for description Use 4 space indentation instead of tabs Remove trailing whitespace End file with a newline --- .../pmd/lang/vf/rule/security/xml/VfCsrf.xml | 54 +- .../vf/rule/security/xml/VfUnescapeEl.xml | 1102 ++++++++--------- 2 files changed, 523 insertions(+), 633 deletions(-) diff --git a/pmd-visualforce/src/test/resources/net/sourceforge/pmd/lang/vf/rule/security/xml/VfCsrf.xml b/pmd-visualforce/src/test/resources/net/sourceforge/pmd/lang/vf/rule/security/xml/VfCsrf.xml index b7cafff257..140fb7ab74 100644 --- a/pmd-visualforce/src/test/resources/net/sourceforge/pmd/lang/vf/rule/security/xml/VfCsrf.xml +++ b/pmd-visualforce/src/test/resources/net/sourceforge/pmd/lang/vf/rule/security/xml/VfCsrf.xml @@ -3,35 +3,31 @@ xmlns="http://pmd.sourceforge.net/rule-tests" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://pmd.sourceforge.net/rule-tests http://pmd.sourceforge.net/rule-tests_1_0_0.xsd"> - - - 1 - -]]> - vf - - - - 0 - -]]> - vf - - - - 0 - + CSRF by starting a controller with an EL action + 1 + + ]]> + vf + + + + Controller without actions is perfectly safe + 0 + + ]]> + vf + + + + JS action on load is perfectly safe + 0 + -]]> - vf - + ]]> + vf + diff --git a/pmd-visualforce/src/test/resources/net/sourceforge/pmd/lang/vf/rule/security/xml/VfUnescapeEl.xml b/pmd-visualforce/src/test/resources/net/sourceforge/pmd/lang/vf/rule/security/xml/VfUnescapeEl.xml index fca8199fc3..d7313c8fab 100644 --- a/pmd-visualforce/src/test/resources/net/sourceforge/pmd/lang/vf/rule/security/xml/VfUnescapeEl.xml +++ b/pmd-visualforce/src/test/resources/net/sourceforge/pmd/lang/vf/rule/security/xml/VfUnescapeEl.xml @@ -3,691 +3,585 @@ xmlns="http://pmd.sourceforge.net/rule-tests" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://pmd.sourceforge.net/rule-tests http://pmd.sourceforge.net/rule-tests_1_0_0.xsd"> - - - 1 - + apex:iframe with src pointing to VFEL + 1 + - + -]]> - vf - + ]]> + vf + - - - 1 - + html iframe with src pointing to VFEL + 1 + -