XSS - is it dangerous that innerText string can be HTML elements: script, div etc?

前端 未结 0 490
时光取名叫无心
时光取名叫无心 2020-12-21 15:12

I\'m working on the client side of a reviews web site.

the user can insert in the review description, any text including html element text (like : console.log(\'hell

相关标签:
回答
  • 消灭零回复
提交回复
热议问题