angular / code.angularjs.org

code.angularjs.org
153 stars 749 forks source link

DOM XSS #34

Closed BSec closed 7 years ago

BSec commented 8 years ago

Issue @

Javsscript code: _window.name = window.name.replace(NG_DEFERBOOTSTRAP, '');

Security Issue: Can lead to DOM XSS. Kindly fix it.

Regards BSec

Narretz commented 7 years ago

Bugs / Feature Requests must be reported at: https://github.com/angular/angular.js/issues