The .html() can replaced by .text() which avoids a possible JavaScript injection by a malicious message. Change-Id: Iffdf13299db6fb4ccd8a35b9df4c2f235646ea9d
The .html() can replaced by .text() which avoids a possible JavaScript injection by a malicious message. Change-Id: Iffdf13299db6fb4ccd8a35b9df4c2f235646ea9d