docbrown/spec/lib/liquid/raw_spec.rb
Rafi 2c6555939e
Handling links from different domain (#10479)
* Preventing url from other domains

* Converting slug to keyword

* Changing wording of error message

* Changing wording of error message

* Fixing breaking test
2020-09-29 13:36:32 -04:00

20 lines
883 B
Ruby

require "rails_helper"
RSpec.describe Liquid::Raw, type: :lib do
it "uses the correct regexp for invalid tokens" do
expected_regexp = /\A(.*)#{Liquid::TagStart}\s*(\w+)\s*#{Liquid::TagEnd}\z/om
expect(described_class::FullTokenPossiblyInvalid).to eq(expected_regexp)
end
it "does not allow non whitespace characters in between the tags" do
invalid_markdown = '<img src="x" class="before{% raw %}inside{% endraw ">%}rawafter"onerror=alert(document.domain) '
expect { Liquid::Template.parse(invalid_markdown) }.to raise_error(StandardError)
end
it "raise error message when link tag contain non article URL" do
invalid_markdown = "{% link /some-random-link/ %}"
expect { Liquid::Template.parse(invalid_markdown) }.to(
raise_error(StandardError, "The article you're looking for does not exist: {% link /some-random-link/ %}"),
)
end
end