Cross-site scripting attacks
Posted Apr 13, 2006 9:23 UTC (Thu) by
Dom2 (guest, #458)
In reply to:
Cross-site scripting attacks by jwb
Parent article:
Cross-site scripting attacks
Yes, document.createTextNode() does do the right thing. But I was thinking more in terms of server side solutions like PHP, ASP and JSP. They default to "insecure".
-Dom
(
Log in to post comments)