Getting XSS vulnerabilities while accessing API call and accessing in HTML page. Tried with DOM sanitizer with url and Sanitized html as well, still getting XSS Cross site scripting issues. Tried with below way. Please correct me if anything is wrong and suggest me the solution.
const dataUrl = this.domSanitizer.sanitize(
SecurityContext.RESOURCE_URL,
this.domSanitizer.bypassSecurityTrustResourceUrl(
'https://raw.githubusercontent.com/l-lin/angular-datatables/master/demo/src/data/data.json'
)
);
html:
<td [innerHTML]="person.id | sanitizeHtml"></td>
<td [innerHTML]="person.firstName | sanitizeHtml"></td>
<td [innerHTML]="person.lastName | sanitizeHtml"></td>