 |
HTML5 Security Cheatsheet
Ending HTML comments with a backtick character#133 test On older versions of the Internet Explorer, a backtick charcater can be utilized to end a HTML comment and inject otherwise commented markup. A HTML filter allowing comments can be bypassed with ...
html5sec.org |
 |