A browser API to prevent DOM-Based Cross Site Scripting in modern web applications.
606
stars
74
forks
source link
https://html.spec.whatwg.org/#dom-range-createcontextualfragment should pass "'script'" #543
Closed
mbrodesser-Igalia closed 1 week ago
To " Get Trusted Type compliant string".
Credits to @smaug---- for detecting this.