close
Server side
http://blog.kkbruce.net/2010/11/microsoft-antixss-library-31-upgrade-40.html#.VkmUF9IrKUl
using Microsoft.Security.Application; string 新聞文章 = Sanitizer.GetSafeHtmlFragment(Server.HtmlEncode(commentBox.InnerText));
Client side
http://stackoverflow.com/questions/20855482/preventing-html-and-script-injections-in-javascript
html = html.replace(/</g,"<").replace(/>/g,">");
全站熱搜