diff --git a/WebContent/WEB-INF/web.xml b/WebContent/WEB-INF/web.xml
index 1bb65db..583c7f8 100644
--- a/WebContent/WEB-INF/web.xml
+++ b/WebContent/WEB-INF/web.xml
@@ -8,6 +8,14 @@
CharacterEncodingFilter
/*
+
+ XSSFilter
+ filter.XSSFilter
+
+
+ XSSFilter
+ /*
+
AdminFilter
filter.AdminFilter
diff --git a/src/filter/XSSFilter.java b/src/filter/XSSFilter.java
new file mode 100644
index 0000000..1a5f5a2
--- /dev/null
+++ b/src/filter/XSSFilter.java
@@ -0,0 +1,89 @@
+package filter;
+import java.util.regex.Matcher;
+import java.util.regex.Pattern;
+import java.io.IOException;
+import javax.servlet.Filter;
+import javax.servlet.FilterChain;
+import javax.servlet.ServletException;
+import javax.servlet.ServletRequest;
+import javax.servlet.ServletResponse;
+import javax.servlet.http.HttpServletRequest;
+import javax.servlet.http.HttpServletRequestWrapper;
+
+
+public class XSSFilter implements Filter {
+ public String filter(String htmlStr){
+ if(htmlStr == null) {
+ return null;
+ }
+ String regEx_script = "