Skip to content

Instantly share code, notes, and snippets.

@uploadcare-user
Created March 30, 2018 13:33
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save uploadcare-user/5ab45a2147ee7752804960cc86011e5d to your computer and use it in GitHub Desktop.
Save uploadcare-user/5ab45a2147ee7752804960cc86011e5d to your computer and use it in GitHub Desktop.
Snippet, a browser handling the script
var script = document.createElement('script')
script.innerText = 'var s = "</script><script>alert(\'whoops!\')</script>"';
console.log(script.outerHTML);
>>> <script>var s = "</script><script>alert('whoops!')</script>"</script>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment