# Restricting HTML injection

**URL:** <https://discourse.nodered.org/t/restricting-html-injection/76052>\
**Category:** Dashboard\
**Created:** [3 March 2023 10:59 UTC](https://discourse.nodered.org/t/restricting-html-injection/76052 "2023-03-03T10:59:28Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![MOUNIKA0536](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/mounika0536/32/69950_2.png) [@MOUNIKA0536](https://discourse.nodered.org/u/MOUNIKA0536)\
**Post date:** [3 March 2023 10:59 UTC](https://discourse.nodered.org/t/restricting-html-injection/76052/1 "2023-03-03T10:59:28Z")

</div>

How to avoid html injection in node red default nodes.

---

<div class="post-metadata">

**Author:** ![Steve-Mcl](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/steve-mcl/32/4826_2.png) [@Steve-Mcl](https://discourse.nodered.org/u/Steve-Mcl)\
**Post date:** [3 March 2023 11:08 UTC](https://discourse.nodered.org/t/restricting-html-injection/76052/2 "2023-03-03T11:08:03Z")

</div>

Can you expand on this?

> [@MOUNIKA0536](#):
>
> node red default nodes

I assume you mean the `node-red-dashboard` nodes (not the core nodes built into node-red?

Please provide a demo or detail what you believe the issue to be?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex026/uploads/nodered/original/1X/d073cd938eafa2e558d7c2cd59003b3ef4963033.png) [@system](https://discourse.nodered.org/u/system)\
**Post date:** [2 April 2023 11:08 UTC](https://discourse.nodered.org/t/restricting-html-injection/76052/3 "2023-04-02T11:08:56Z")

</div>

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.
