AEUX icon indicating copy to clipboard operation
AEUX copied to clipboard

CSInterface.js DOM text reinterpreted as HTML

Open Shivam7-1 opened this issue 10 months ago • 10 comments

By using innerText, it will avoid the risk of HTML injection, as these properties automatically escape any HTML special characters in the provided text. This helps prevent cross-site scripting (XSS) vulnerabilities by treating the input as plain text rather than interpreted HTML. Always be cautious when dealing with user input or dynamic content to prevent security risks.

Shivam7-1 avatar Apr 14 '24 06:04 Shivam7-1

Hi @adamplouff Could You Please Review this PR Thanks

Shivam7-1 avatar Apr 14 '24 06:04 Shivam7-1

Hi @adamplouff Could You Please Review this PR Thanks

Shivam7-1 avatar Apr 17 '24 06:04 Shivam7-1

Hi @adamplouff Could You Please Review this PR Thanks

Shivam7-1 avatar Apr 19 '24 16:04 Shivam7-1

Hi @adamplouff Could You Please Review this PR Thanks

Shivam7-1 avatar Apr 21 '24 12:04 Shivam7-1

Hi @adamplouff Could You Please Review this PR Thanks

Shivam7-1 avatar Apr 29 '24 13:04 Shivam7-1

Hi @adamplouff Is there Anything Else is Required From My Side To get This PR merge Thanks

Shivam7-1 avatar May 03 '24 02:05 Shivam7-1

Hi @adamplouff Could You Please Review this PR Thanks

Shivam7-1 avatar May 05 '24 12:05 Shivam7-1

Hi @adamplouff Could You Please Review this PR Thanks

Shivam7-1 avatar May 12 '24 16:05 Shivam7-1

I have been using this tool for a little bit and, since I am starting to get into open source, want to make some potential contributions myself but is no one checking any of the pull requests? I really hope this tool isn't abandoned given its usefulness.

sculli-net avatar Aug 27 '24 05:08 sculli-net

Use overlord 2

On Mon, Aug 26, 2024 at 10:37 PM Matt Scullino @.***> wrote:

I have been using this tool for a little bit and, since I am starting to get into open source, want to make some potential contributions myself but is no one checking any of the pull requests? I really hope this tool isn't abandoned given its usefulness.

— Reply to this email directly, view it on GitHub https://github.com/google/AEUX/pull/212#issuecomment-2311611098, or unsubscribe https://github.com/notifications/unsubscribe-auth/AALNXMZHUXL2KVHLQGGF6WTZTQGBXAVCNFSM6AAAAABGGA77EKVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDGMJRGYYTCMBZHA . You are receiving this because you are subscribed to this thread.Message ID: @.***>

vmedium avatar Aug 27 '24 14:08 vmedium