index
:
hedgedoc
cindy
Hedgedoc with support for CindyScript
summary
refs
log
tree
commit
diff
log msg
author
committer
range
path:
root
/
public
/
js
/
render.js
(
follow
)
Commit message (
Collapse
)
Author
Age
Files
Lines
*
Prevent XSS vul by srcdoc in iframe
Sheogorath
2017-11-24
1
-1
/
+1
|
*
Fix unclosed tags might cause XSS [Security Issue]
Wu Cheng-Han
2017-09-27
1
-1
/
+1
|
*
Fix link regex should filter protocol with case insensitive flag [Security ↵
Wu Cheng-Han
2017-04-11
1
-1
/
+1
|
|
|
|
Issue]
*
Fix XSS vulnerability in link regex [Security Issue]
Wu Cheng-Han
2017-03-22
1
-2
/
+2
|
*
Fix render.js code styles
Wu Cheng-Han
2017-03-22
1
-6
/
+6
|
*
Use JavaScript Standard Style (part 2)
BoHong Li
2017-03-09
1
-37
/
+39
|
|
|
|
Fixed all fail on frontend code.
*
Update to allow li tag specify value number
Wu Cheng-Han
2017-02-17
1
-0
/
+2
|
*
Fix slide might able to add unsafe attribute on section tag which cause XSS ↵
Wu Cheng-Han
2016-11-26
1
-0
/
+1
|
|
|
|
[Security Issue]
*
Update to support summary tag
Wu Cheng-Han
2016-10-29
1
-0
/
+2
|
*
More function expose workaround for reveal-markdown.js
Yukai Huang
2016-10-10
1
-0
/
+1
|
*
Resolve dependency module requiring
Yukai Huang
2016-10-08
1
-1
/
+5
|
|
|
|
|
|
|
|
* es5 style module exports * remove script tag require * webpack config ProvidePlugin Note that this commit only fix JavaScript module loading runtime error.
*
Update to support data uri in src attribute of image tag
Wu Cheng-Han
2016-08-15
1
-0
/
+6
|
*
Update XSS policy to allow iframe and link with custom protocol
Wu Cheng-Han
2016-08-14
1
-10
/
+19
|
*
Update filter XSS to allow attr href starts with '.' or '/'
Cheng-Han, Wu
2016-04-20
1
-0
/
+6
|
*
Fix XSS HTML replace might get wrong on the HTML comments in the code tags
Cheng-Han, Wu
2016-04-20
1
-0
/
+4
|
*
Fixed filter XSS should allow ordered list specify start number
Cheng-Han, Wu
2016-03-04
1
-0
/
+4
|
*
Support kbd tag
Cheng-Han, Wu
2016-02-22
1
-1
/
+1
|
*
Updated to support html comment tag in XSS
Cheng-Han, Wu
2016-02-16
1
-1
/
+2
|
*
Updated XSS filter options to allow style tag and style attribute
Cheng-Han, Wu
2016-02-11
1
-11
/
+21
|
*
Fixed prevent XSS might break lots of tags and only need after rendered
Cheng-Han, Wu
2016-02-11
1
-0
/
+13