From 0f4fff2d6f3ef95bc383493665c20b185f5caa9b Mon Sep 17 00:00:00 2001 From: Dan Seripap Date: Thu, 25 Feb 2016 16:43:53 -0500 Subject: [PATCH] Escaping characters before embed --- src/js/main.js | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/src/js/main.js b/src/js/main.js index a5738b3..e0f1d02 100644 --- a/src/js/main.js +++ b/src/js/main.js @@ -211,9 +211,10 @@ $(function() { darkwire.encodeMessage(cleanedMessage, 'text').then((socketData) => { message.val(''); $('#send-message-btn').removeClass('active'); + // Add escaped message since message did not come from the server chat.addChatMessage({ username: username, - message: cleanedMessage + message: escape(cleanedMessage) }); socket.emit('new message', socketData); }).catch((err) => {