How Angular Apps Prevent this Attack?
To block Cross-Site-Scripting attacks, we must prevent the malicious code from application DOM.

When a value is inserted into the DOM from a template using the property, style, class binding, attribute, or interpolation, Angular sanitizes and escapes untrusted values.

