hayoo
hayoo copied to clipboard
HTML is not properly escape
HTML in documentation is not properly escaped, which is an injection issue. You can see this by searching for textarea.