plainblack / ving

An opinionated web services starter for Nuxt3 that provides REST and per-field privileges out of the box.
https://plainblack.github.io/ving/
63 stars 7 forks source link

secure HTML and SVG #163

Open rizen opened 3 months ago

rizen commented 3 months ago

This article discusses some vulnerabilities with HTML and SVG on S3: https://env.fail/posts/aws-s3/

this can strip javascript from svg: https://github.com/svg/svgo