Use of unescaped data in HTML templates¶ The software does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output. More Information¶ G203: Use of unescaped data in HTML templates