HN2new | past | comments | ask | show | jobs | submitlogin

The Play framework (Scala, Java) and Mojolicious (Perl) (and many other newer frameworks probably) escape output by default, so at least they make you think before allowing XSS.


same with Django (Python)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: