Limited availability
parseHTMLUnsafe()
㯠Document
ãªãã¸ã§ã¯ãã®éçã¡ã½ããã§ãHTML ã®æååï¼å®£è¨çãªã·ã£ãã¦ã«ã¼ããå«ãå¯è½æ§ããããã®ï¼ãè§£éããæ°ãã Document
ã¤ã³ã¹ã¿ã³ã¹ãçæããããã«ä½¿ç¨ãã¾ãã
ã¡ã½ããåã®æ¥å°¾è¾ "Unsafe" ã¯ã <script>
è¦ç´ ãæ§æè§£æä¸ã«è©ä¾¡ãããªãã®ã«å¯¾ãããã®ã¡ã½ããã¯ä»ã«ãå®å
¨ã§ãªãå¯è½æ§ã®ãã XSS é¢é£ã®å
¥åããµãã¿ã¤ãºããªããã¨ã示ãã¾ãã
çµæã¨ãã¦å¾ããã Document
ã¯ãã³ã³ãã³ãåã "text/html"ãæåã»ããã«ã¯ UTF-8ãURL ã«ã¯ "about:blank" ãæå®ããã¾ãã
Document.parseHTMLUnsafe(input)
弿°
html
è§£éãã HTML ã®æååã§ãã
Document
ã§ãã
ãªãã
仿§æ¸ ãã©ã¦ã¶ã¼ã®äºææ§ é¢é£æ å ±DOMParser.parseFromString()
: HTML ã¾ã㯠XML ã DOM ããªã¼ã«å
¥ããElement.setHTMLUnsafe
RetroSearch is an open source project built by @garambo | Open a GitHub Issue
Search and Browse the WWW like it's 1997 | Search results from DuckDuckGo
HTML:
3.2
| Encoding:
UTF-8
| Version:
0.7.4