Detects "object.escapeMarkup = false", which can be used with some template engines to disable escaping of HTML entities (security/detect-disable-mustache-escape
)
recommended
config.
This can lead to Cross-Site Scripting (XSS) vulnerabilities.
More information: OWASP XSS