Open sfilipi opened 6 years ago
Enable the right menu on ng2-tree. Right click on a node -> Rename and enter the following as the new nodes name:
<img onerror="alert('hi')" src="/">
Notice the page runs the script.
The user input to the node name should be sanitized before use.
@sfilipi Thanks, for that - will do a fix ASAP!
Enable the right menu on ng2-tree. Right click on a node -> Rename and enter the following as the new nodes name:
<img onerror="alert('hi')" src="/">
Notice the page runs the script.
The user input to the node name should be sanitized before use.