Skip to content

Latest commit

 

History

History
7 lines (4 loc) · 409 Bytes

no-html-method.md

File metadata and controls

7 lines (4 loc) · 409 Bytes

Do not write to DOM directly using jQuery html() method (no-html-method)

Direct calls to method html() often (e.g. in jQuery framework) manipulate DOM without any sanitization and should be avoided. Use document.createElement() or similar methods instead.

Related Rules