Welcome Guest, Not a member yet? Register   Sign In
Security Issues (input and output)
#4

Just a quick one, could anyone explain why we should use xss_clean() ?

My understanding has always been that htmlspecialchars() or htmlentities() with ENT_QUOTES is enough?

Therefore isn't CI's escape_html() all that is needed to prevent XSS attacks on output?
Reply


Messages In This Thread
RE: Security Issues (input and output) - by CINewb - 04-29-2016, 07:18 AM



Theme © iAndrew 2016 - Forum software by © MyBB