users@jersey.java.net

[Jersey] XSS attack prevention

From: Navin Desai <ndesai_at_tagworldwide.com>
Date: Mon, 20 Jan 2014 15:08:06 +0000

Hi,

We have some issues regarding XSS attack prevention for our Jersey rest api. We are using Jersey version : 1.17.1.

We would like to know whether Jersey provides any mechanism to block XSS attack specially when use JSON payloads. Is there any mechanism to escape html and scrpit tags in the JSON payload?

If not in 1.17.1 is there any such mechanis in Jersey 2 ?

regards


This e-mail has been scanned for all viruses by Star.