Why Escape HTML Characters?
In HTML, characters like <, >, and & are syntactically reserved for tags and references. Unescaped user inputs can trigger layout breaks or dangerous Cross-Site Scripting (XSS) vulnerabilities. Escaping them ensures raw code displays safely as plain text.
The Five XML/HTML Core Entities
&➡️&(Ampersand)<➡️<(Less-than)>➡️>(Greater-than)"➡️"(Double quotation)'➡️'(Single quotation / apostrophe)