mirror of https://github.com/go-gitea/gitea
Git with a cup of tea, painless self-hosted git service
Mirror for internal git.with.parts use
https://git.with.parts
You can not select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
38 lines
727 B
38 lines
727 B
// Copyright 2023 The Gitea Authors. All rights reserved.
|
|
// SPDX-License-Identifier: MIT
|
|
|
|
package httplib
|
|
|
|
import (
|
|
"testing"
|
|
|
|
"code.gitea.io/gitea/modules/setting"
|
|
|
|
"github.com/stretchr/testify/assert"
|
|
)
|
|
|
|
func TestIsRiskyRedirectURL(t *testing.T) {
|
|
setting.AppURL = "http://localhost:3000/"
|
|
tests := []struct {
|
|
input string
|
|
want bool
|
|
}{
|
|
{"", false},
|
|
{"foo", false},
|
|
{"/", false},
|
|
{"/foo?k=%20#abc", false},
|
|
|
|
{"//", true},
|
|
{"\\\\", true},
|
|
{"/\\", true},
|
|
{"\\/", true},
|
|
{"mail:a@b.com", true},
|
|
{"https://test.com", true},
|
|
{setting.AppURL + "/foo", false},
|
|
}
|
|
for _, tt := range tests {
|
|
t.Run(tt.input, func(t *testing.T) {
|
|
assert.Equal(t, tt.want, IsRiskyRedirectURL(tt.input))
|
|
})
|
|
}
|
|
}
|
|
|