The DOM API is not secure by default. Below are some examples, eval('foo()'); document.createElement('div').innerHTML = '<foo> ...
確定! 回上一頁