SecLists/Pattern-Matching/dangerous-functions-angular.txt
2020-01-31 17:26:08 +03:30

15 lines
292 B
Plaintext

# Angular pipes
bypassSecurityTrustHtml
bypassSecurityTrustScript
bypassSecurityTrustStyle
bypassSecurityTrustUrl
bypassSecurityTrustResourceUrl
# Angular inputs
[innerHTML] //Insert given HTML without escaping dangerous characters
# angular.js (aka Angular 1)
trustAsHtml
$eval
$evalAsync