:
Log in
Sign up
1
Matching Annotations
Dec 2020
github.com
github.com
Rich-Harris/devalue
1
TylerRick
16 Dec 2020
in
Public
${JSON.stringify(state)}
interpolating without escaping (using raw unescaped value)
avoid doing (bad ideas)
security
security: cross-site scripting (XSS) vulnerability
Visit annotations in context
Tags
security: cross-site scripting (XSS) vulnerability
security
avoid doing (bad ideas)
interpolating without escaping (using raw unescaped value)
Annotators
TylerRick
URL
github.com/Rich-Harris/devalue
Collapse view
Share:
Group.
Only group members will be able to view this annotation.
Only me.
No one else will be able to view this annotation.