Update Angular dangerous functions
This commit is contained in:
@@ -1,8 +1,14 @@
|
||||
# Angular pipes
|
||||
bypassSecurityTrustHtml
|
||||
bypassSecurityTrustScript
|
||||
bypassSecurityTrustStyle
|
||||
bypassSecurityTrustUrl
|
||||
bypassSecurityTrustResourceUrl
|
||||
|
||||
# Angular inputs
|
||||
[innerHTML] //Insert given HTML without escaping dangerous characters
|
||||
|
||||
# angular.js (aka Angular 1)
|
||||
trustAsHtml
|
||||
$eval
|
||||
$evalAsync
|
||||
|
||||
Reference in New Issue
Block a user