WebGoat/webapp/js/instructor/DOMXSS_i.js
2014-08-13 06:14:11 -04:00

14 lines
325 B
JavaScript

function displayGreeting(name) {
if (name != ''){
document.getElementById("greeting").innerHTML="Hello, " + escapeHTML(name) + "!";
}
}
function escapeHTML (str) {
var div = document.createElement('div');
var text = document.createTextNode(str);
div.appendChild(text);
return div.innerHTML;
}