mirror of
https://github.com/NginxProxyManager/nginx-proxy-manager.git
synced 2025-09-15 19:32:35 +00:00
fixing html sanitiation
This commit is contained in:
@@ -28,13 +28,13 @@ module.exports = Mn.View.extend({
|
|||||||
|
|
||||||
return '#' + (this.object_id || '?');
|
return '#' + (this.object_id || '?');
|
||||||
},
|
},
|
||||||
createSpecificTableCell: function(value) {
|
createSpecificTableCell: function(value) {
|
||||||
if (value && value.trim() !== '') {
|
if (value && value.trim() !== '') {
|
||||||
|
value = value.replace(/&/g, "&").replace(/</g, "<").replace(/>/g, ">").replace(/"/g, """).replace(/'/g, "'");
|
||||||
return `<td>${value}</td>`;
|
return `<td>${value}</td>`;
|
||||||
} else {
|
} else {
|
||||||
return `<td class="text-center">-</td>`;
|
return `<td class="text-center">-</td>`;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
}
|
}
|
||||||
});
|
});
|
||||||
|
@@ -30,7 +30,8 @@ module.exports = Mn.View.extend({
|
|||||||
},
|
},
|
||||||
createSpecificTableCell: function(value) {
|
createSpecificTableCell: function(value) {
|
||||||
if (value && value.trim() !== '') {
|
if (value && value.trim() !== '') {
|
||||||
return `<td>${value}</td>`;
|
value = value.replace(/&/g, "&").replace(/</g, "<").replace(/>/g, ">").replace(/"/g, """).replace(/'/g, "'");
|
||||||
|
return `<td>${value}</td>`;
|
||||||
} else {
|
} else {
|
||||||
return `<td class="text-center">-</td>`;
|
return `<td class="text-center">-</td>`;
|
||||||
}
|
}
|
||||||
|
@@ -30,6 +30,7 @@ module.exports = Mn.View.extend({
|
|||||||
},
|
},
|
||||||
createSpecificTableCell: function(value) {
|
createSpecificTableCell: function(value) {
|
||||||
if (value && value.trim() !== '') {
|
if (value && value.trim() !== '') {
|
||||||
|
value = value.replace(/&/g, "&").replace(/</g, "<").replace(/>/g, ">").replace(/"/g, """).replace(/'/g, "'");
|
||||||
return `<td>${value}</td>`;
|
return `<td>${value}</td>`;
|
||||||
} else {
|
} else {
|
||||||
return `<td class="text-center">-</td>`;
|
return `<td class="text-center">-</td>`;
|
||||||
|
Reference in New Issue
Block a user