Jump to content

Translations:Manual:Tag extensions/41/en

From wikiNonStop

It is vital that all user input is treated in this manner before echoing it back to the clients, to avoid introducing vectors for arbitrary HTML injection, which can lead to cross-site scripting vulnerabilities.