◐ Shell
clean mode source ↗

fix(@angular/build): escape prerender redirect URLs by SkyZeroZx · Pull Request #33248 · angular/angular-cli

Skip to content

Navigation Menu

Provide feedback

Saved searches

Use saved searches to filter your results more quickly

Sign up

Appearance settings

Conversation

@SkyZeroZx SkyZeroZx marked this pull request as ready for review

May 25, 2026 00:17

gemini-code-assist[bot]

alan-agius4

alan-agius4

Escape prerender redirect targets before embedding them in generated static
redirect pages.

This prevents attacker-controlled redirect URLs from breaking out of the meta
refresh, anchor href, or fallback text contexts and injecting HTML that could
lead to XSS.

Labels