<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
	<title>jQuery Grid Plugin - jqGrid - Topic: Handling XSS in jqgrid WITHOUT autoencode</title>
	<link>http://www.trirand.com/blog/?page_id=393/help/handling-xss-in-jqgrid-without-autoencode</link>
	<description><![CDATA[Grid plugin]]></description>
	<generator>Simple:Press Version 5.7.5.3</generator>
	<atom:link href="http://www.trirand.com/blog/?page_id=393/help/handling-xss-in-jqgrid-without-autoencode/rss" rel="self" type="application/rss+xml" />
        <item>
        	<title>tony on Handling XSS in jqgrid WITHOUT autoencode</title>
        	<link>http://www.trirand.com/blog/?page_id=393/help/handling-xss-in-jqgrid-without-autoencode#p30936</link>
        	<category>Help</category>
        	<guid isPermaLink="true">http://www.trirand.com/blog/?page_id=393/help/handling-xss-in-jqgrid-without-autoencode#p30936</guid>
        	        	<description><![CDATA[<p>Hello,</p>
<p>I have answered you in your previous post.</p>
<p>Please, do not post the same port in two different topics.</p>
<p>Â </p>
<p>Regards</p>
]]></description>
        	        	<pubDate>Mon, 11 Aug 2014 14:04:38 +0300</pubDate>
        </item>
        <item>
        	<title>dk on Handling XSS in jqgrid WITHOUT autoencode</title>
        	<link>http://www.trirand.com/blog/?page_id=393/help/handling-xss-in-jqgrid-without-autoencode#p30926</link>
        	<category>Help</category>
        	<guid isPermaLink="true">http://www.trirand.com/blog/?page_id=393/help/handling-xss-in-jqgrid-without-autoencode#p30926</guid>
        	        	<description><![CDATA[<p>Hi all,Â </p>
<p>I am working on inline editing in jqGrid, and wanted to escape wherever the html is getting executed. I can't use autoencode for now due to the way different consumers are using the grid code. Could you please point me out in the jqgrid code where to escape the html so it does not executeÂ code like this when entered through inline editing:Â </p>
<p>&#60;img src=a onerror=alert(1)&#62;</p>
<p>Thanks!!</p>
]]></description>
        	        	<pubDate>Tue, 05 Aug 2014 05:54:36 +0300</pubDate>
        </item>
</channel>
</rss>