Hacker News new | ask | show | jobs
by omouse 3534 days ago
Agreed and this is why React has been given a pass I think, because it's only for display purposes.
2 comments

Really it doesn't matter if it's for display purposes or not. It all boils down to implementation. I can make a view library riddled with XSS vulns in very little time.
React is actively maintained and doesn't have any known security vulnerabilities.