Weujie
Weujie
The markdown preview executes the xss vector, and the stored xss occurs in the community posting, which can be fixed by the [DOMPurify](https://github.com/cure53/DOMPurify) project. `` 
例如: /;/actuator/env //actuator/..;/env
`/dnscat2/server$ bundle install Fetching gem metadata from https://rubygems.org/....... Using bundler 2.3.12 Using ecdsa 1.2.0 Following files may not be writable, so sudo is needed: /usr/local/bin /var/lib/gems/2.7.0 /var/lib/gems/2.7.0/build_info /var/lib/gems/2.7.0/cache /var/lib/gems/2.7.0/doc /var/lib/gems/2.7.0/extensions...