What is Nostr?
Frederik Braun � /
npub1958…x4mx
2024-09-02 08:01:38

Frederik Braun � on Nostr: We just published v4.1.0 of the eslint plugin `no-unsanitized`, which prohibits the ...

We just published v4.1.0 of the eslint plugin `no-unsanitized`, which prohibits the usafe of XSS sinks (e.g., `innerHTML=` or `setHTMLUnsafe()`) without the use of a preconfigured sanitizer library.
The rule helps finding and preventing XSS in various Mozilla projects, including Firefox.
Technical Details at https://frederikbraun.de/finding-and-fixing-dom-based-xss-with-static-analysis.html and source at https://github.com/mozilla/eslint-plugin-no-unsanitized
Author Public Key
npub1958mefcsz02gs9h45vwrj7q92cjd3l0gflk2e04m7ev4ynvuzr8qayx4mx