summaryrefslogtreecommitdiff
path: root/public/js/index.js
diff options
context:
space:
mode:
authorWu Cheng-Han2017-03-14 16:27:55 +0800
committerWu Cheng-Han2017-03-14 16:27:55 +0800
commitf491cdabc1dd82e93523ac0e156a669d9f37ba89 (patch)
tree04ba9d721e46eaf379fd3ccc71955a88c5ca8070 /public/js/index.js
parentedb1b4aa0a72ac8b0215211c9dbc54156c3ff91f (diff)
Fix rendering might result XSS attribute on self closing tag [Security Issue]
Diffstat (limited to 'public/js/index.js')
-rw-r--r--public/js/index.js2
1 files changed, 2 insertions, 0 deletions
diff --git a/public/js/index.js b/public/js/index.js
index e672a68d..23e0f168 100644
--- a/public/js/index.js
+++ b/public/js/index.js
@@ -42,6 +42,7 @@ import {
deduplicatedHeaderId,
exportToHTML,
exportToRawHTML,
+ removeDOMEvents,
finishView,
generateToc,
isValidURL,
@@ -3374,6 +3375,7 @@ function updateViewInner () {
if (result && lastResult && result.length !== lastResult.length) { updateDataAttrs(result, ui.area.markdown.children().toArray()) }
lastResult = $(result).clone()
}
+ removeDOMEvents(ui.area.markdown)
finishView(ui.area.markdown)
autoLinkify(ui.area.markdown)
deduplicatedHeaderId(ui.area.markdown)