Book title and author data are injected directly into `innerHTML` without sanitization

April 16, 2026 ยท #302
View on GitHub
Python Difficulty: Medium

Sign in required

Authenticate to use favourites & bookmarks

5