jquery-encoder icon indicating copy to clipboard operation
jquery-encoder copied to clipboard

encodeForHTML

Open ludovic opened this issue 9 years ago • 1 comments

The function encodeForHTML don't protect against XSS attacks like : <“img src=x onerror=alert(1)>

*remove the "

ludovic avatar Jun 24 '15 16:06 ludovic

@ludovic - can you add some additional detail here. What is the code that you are using where you are seeing this issue?

chrisisbeef avatar Dec 11 '15 21:12 chrisisbeef