We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
4.40.0
Node version 20.10.0
Platform No response
In iframe srcdoc element user can inject any script that could produce XSS attack
Sanitize srcdoc attribute, remove any scripts from there
The text was updated successfully, but these errors were encountered:
The same issue in sanitize-html
apostrophecms/sanitize-html#217
Sorry, something went wrong.
No branches or pull requests
Package version
4.40.0
Node version
20.10.0
Platform
No response
Problem
In iframe srcdoc element user can inject any script that could produce XSS attack
Solution
Sanitize srcdoc attribute, remove any scripts from there
The text was updated successfully, but these errors were encountered: