
Episode 55: Popping WordPress Plugins - Methodology Braindump
Critical Thinking - Bug Bounty Podcast
00:00
Discussion on HTML tag cleaning and attribute escaping
A discussion about the 'strip_evil_scripts' function for cleaning HTML tags, the 'sanitized_text_field' function which lacks attribute escaping, potential vulnerabilities of attribute code injection, and the role of the 'escape_attr' function.
Transcript
Play full episode