From dc7ca8b7e7de823a2e9425e1590567e26ef4cb24 Mon Sep 17 00:00:00 2001 From: Alan Friedman Date: Tue, 12 Jan 2016 22:38:31 -0500 Subject: [PATCH] Sanitize input to prevent XSS --- src/js/main.js | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/js/main.js b/src/js/main.js index 9bc5980..7345da0 100644 --- a/src/js/main.js +++ b/src/js/main.js @@ -191,7 +191,7 @@ $(function() { // Prevents input from having injected markup function cleanInput (input) { - var message = $('
').text(input).text(); + var message = $('
').html(input).text(); message = Autolinker.link(message); return message; }