You are here |
ggr.com | ||
| | | |
www.ramblingcode.dev
|
|
| | | | Collection of bite-sized posts and projects on web development - focusing mainly on Ruby, Linux and Javascript. | |
| | | |
lav.io
|
|
| | | | ||
| | | |
greg.molnar.io
|
|
| | | | Phlex is a Ruby gem for building HTML components. Even though the HTML specification permits the usage of the javascript scheme in the href attribute of an anchor tag, Phlex doesn't permit it to prevent an accidental XSS. When I had an initial look at the gem around its inception, I didn't really checked how this filtering works, but a Twitter exchange with Joel reminded me to see if it can be bypassed somehow. | |
| | | |
kokada.dev
|
|
| |