Human-Connection/Embed-API

XSS - Remove ALL HTML from results

appinteractive opened this issue · 0 comments

There is an issue with Metascraper as they doe no result sanetization so its possible to add scripts via meta tags: https://hackerone.com/reports/309367