diff --git a/xss-example.js b/xss-example.js index 24518b6..b4adba3 100644 --- a/xss-example.js +++ b/xss-example.js @@ -1,5 +1,5 @@ var urlParams = new URLSearchParams(window.location.search); var name = urlParams.get('name'); -var unsafe_div = window.document.getElementById("vulnerable-div"); -unsafe_div.innerHTML = "Hello " + name; +var unsafe_div = window.document.getElementById("vulnerable-div"); +unsafe_div.textContent = "Hello " + name;