If user input does not get encoded, malicious inputs can mess up your HTML. Moreover, these malicious inputs can be some arbitrary JavaScript code.
確定! 回上一頁