You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
It's a lot easier, safer, and future-proof to specify just the tags that you want to allow, instead of everything to disallow.
For example, 'onclick', 'onerror', 'onhover', 'onmouseover'... are there other attributes I'm missing? Does Gecko/Webkit/Blink have other proprietary events I need to blacklist to protect users of those browsers?
The text was updated successfully, but these errors were encountered:
It's a lot easier, safer, and future-proof to specify just the tags that you want to allow, instead of everything to disallow.
For example, 'onclick', 'onerror', 'onhover', 'onmouseover'... are there other attributes I'm missing? Does Gecko/Webkit/Blink have other proprietary events I need to blacklist to protect users of those browsers?
The text was updated successfully, but these errors were encountered: