https://sweetalert2.github.io/#configuration

 

html
''
A HTML description for the popup.
If text and html parameters are provided in the same time, html will be used.
[Security] SweetAlert2 does NOT sanitize this parameter. It is the developer's responsibility to escape any user input when using the html option, so XSS attacks would be prevented.
text
''
A description for the popup.
If text and html parameters are provided in the same time, html will be used.         

 

https://www.cnblogs.com/zx-admin/p/6009558.html

html false 如果设置为true,将不转义标题和文本参数。 (如果您担心XSS攻击,请设置为false。)

html默认是false,会自动做html encode。所以如果在asp.net mvc的cshtml中处理的话,需要启用html为true,因为mvc的框架本身会帮忙做html encode。

 

相关文章:

  • 2021-12-05
  • 2022-12-23
  • 2022-12-23
  • 2021-10-03
  • 2022-01-20
  • 2021-12-28
  • 2021-12-16
  • 2022-12-23
猜你喜欢
  • 2021-10-25
  • 2022-12-23
  • 2021-05-31
  • 2022-01-28
  • 2021-10-12
  • 2021-12-25
  • 2021-11-21
相关资源
相似解决方案