var dp = $("#dp").val();
var dpXSS = filterXss(dp);
document.getElementById("description").innerHTML= "<p>"+dpXSS+"</p>";
function filterXss(content){
var str = content.split("");
for(var i=0;i<str.length;i++){
switch(str[i]){
case '&': str[i] = "&";break;
case '<': str[i] = "<";break;
case '>': str[i] = ">";break;
case '"': str[i] = "\"";break;
case ''': str[i] = "'";break;
default:break;
}
}
return str.join("");
}
转载于:https://www.cnblogs.com/ChickenTang/p/5655398.html