java - Sending xml data in hidden field.Is it safe? -
i have html form:
<form> <input type="hidden" id="hiddenfield"/> ...other form fields </form>
in form want set hidden field xml data. can suggest if fine set hidden field directly xml data. i.e. in javascript function safe directly set hidden field xml like: $(#hiddenfiled).val(xml);
, xml in java servlet?please suggest.
no can't keep xml without encoding can opt either
var stringvalue=escape(xml); var xmlvalue= unescape (stringvalue)
in javascript
though these methods has been depreciated in newer versions find in library http://underscorejs.org/#escapeunderscorejs
also don't keep xml in hidden field if holds andy sensitive information.
Comments
Post a Comment