@jeffalo /chat may have a few xss vulnerabilities, but just HTML, no scripting (good job you are good at this)

comments (single view)

ahh ok (makes sense)

time to look at DOMpurify

View all comments