alibaba / BizCharts

Powerful data visualization library based on G2 and React.
http://bizcharts.net/products/bizCharts
6.17k stars 671 forks source link

XSS on BizCharts #1249

Open IversionBY opened 4 years ago

IversionBY commented 4 years ago

BizCharts Version: 4.x Platform: chrome Mini Showcase(like screenshots): image

I think you should consider the issue of xss entity encoding,This will make apps using your library safe by default.

Leannechn commented 3 years ago

We will put it into the plan and improve it as soon as possible