The single most important principle I see newer web developers overlook: don't trust your inputs. My guess is that the blurring of front and back ends has led to a blurring of this idea, too. But it's super-important. Sanitize everything, always. (Dare I say that the same goes for life?)

