mozilla / eslint-plugin-no-unsanitizedLinks
Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike
☆239Updated 4 months ago
Alternatives and similar repositories for eslint-plugin-no-unsanitized
Users that are interested in eslint-plugin-no-unsanitized are comparing it to the libraries listed below
Sorting:
- ☆377Updated 11 months ago
- Find security vulnerabilities in open source npm packages while you code☆211Updated 3 years ago
- A browser API to prevent DOM-Based Cross Site Scripting in modern web applications.☆642Updated 2 months ago
- A Modest Content Security Proposal☆40Updated 4 years ago
- WebAppSec Content Security Policy☆221Updated 2 months ago
- ☆260Updated last month
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 4 years ago
- TC39 proposal for mitigating prototype pollution☆52Updated 2 years ago
- Mitigate security concerns of Dependency Confusion supply chain security risks☆51Updated 6 months ago
- Concurrent prettier runner☆263Updated last year
- ESLint plugin for XSS detection☆69Updated 2 years ago
- Collection of security best practices for package managers.☆164Updated 3 years ago
- eslintrc.js config files for running static analysis on JavaScript to identify security issues.☆63Updated 5 years ago
- rules for scanjs functionality☆28Updated 4 years ago
- TSLint security rules☆69Updated 5 years ago
- A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC☆32Updated last year
- 🌍 Normalized repository URLs for every package in the npm registry. Updated daily.☆96Updated this week
- Content released at NorthSec 2018 for my talk on prototype pollution☆532Updated last year
- ☆141Updated last week
- ESLint plugin to detect and stop Trojan Source attacks☆79Updated 2 months ago
- Prototype Pollution in JavaScript☆75Updated 3 years ago
- A CLI and library which tests helps score how vulnerable a regex pattern is to ReDoS attacks. Supported in the browser, Node and Deno.☆52Updated last week
- rewrite constructor arguments, call DOMPurify, profit☆71Updated last year
- umbrella config to achieve scanjs-like functionality through eslint☆87Updated 4 years ago
- Discussion area for security aspects of ECMAScript☆64Updated 8 years ago
- Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]☆42Updated last year
- UUID V4☆62Updated 2 years ago
- ☆48Updated 4 months ago
- 🔤 A list of all the public package names on npm. Updated daily.☆287Updated this week
- A zoo for malicious NPM packages☆20Updated 3 years ago