Skip to content

Fix XSS security vulnerability#89

Open
pcworld wants to merge 1 commit intodavatron5000:masterfrom
pcworld:xss-fix
Open

Fix XSS security vulnerability#89
pcworld wants to merge 1 commit intodavatron5000:masterfrom
pcworld:xss-fix

Conversation

@pcworld
Copy link

@pcworld pcworld commented Apr 26, 2020

Using textContent instead of appending to HTML ensures that escaped HTML
characters stay escaped.
Fixes issue #88

Using textContent instead of appending to HTML ensures that escaped HTML
characters stay escaped.
Fixes issue davatron5000#88
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant