New blog post π
If you replace all the innerHTML with setHTML, you will be free from XSS and other injection attacks. Goodbye innerHTML, Hello setHTML
(Kudos to our folks for specifying, building and shipping!)
New blog post π
If you replace all the innerHTML with setHTML, you will be free from XSS and other injection attacks. Goodbye innerHTML, Hello setHTML
(Kudos to our folks for specifying, building and shipping!)
If you have a fediverse account, you can quote this note from your own instance. Search https://social.security.plumbing/users/freddy/statuses/116125757286032273 on your instance and quote it. (Note that quoting is not supported in Mastodon.)