SecLists/Pattern-Matching/dangerous-functions-angular.txt

15 lines
291 B
Plaintext
Raw Normal View History

2020-01-31 17:26:08 +03:30
# Angular pipes
bypassSecurityTrustHtml
bypassSecurityTrustScript
bypassSecurityTrustStyle
bypassSecurityTrustUrl
bypassSecurityTrustResourceUrl
2020-01-31 17:26:08 +03:30
# Angular inputs
2020-01-31 17:27:18 +03:30
[innerHTML] #Insert given HTML without escaping dangerous characters
2020-01-31 17:26:08 +03:30
# angular.js (aka Angular 1)
trustAsHtml
$eval
$evalAsync