From a94f2389522a99f367c5c7d3b7a9ca7aca2087b0 Mon Sep 17 00:00:00 2001 From: Kailash Nadh Date: Sun, 1 May 2022 12:13:50 +0530 Subject: [PATCH] Sanitize HTML in Buefy dialogs. --- frontend/src/utils.js | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/frontend/src/utils.js b/frontend/src/utils.js index 2a9ec842c..5bb3b61ea 100644 --- a/frontend/src/utils.js +++ b/frontend/src/utils.js @@ -133,7 +133,7 @@ export default class Utils { confirm = (msg, onConfirm, onCancel) => { Dialog.confirm({ scroll: 'keep', - message: !msg ? this.i18n.t('globals.messages.confirm') : msg, + message: !msg ? this.i18n.t('globals.messages.confirm') : this.escapeHTML(msg), confirmText: this.i18n.t('globals.buttons.ok'), cancelText: this.i18n.t('globals.buttons.cancel'), onConfirm, @@ -144,7 +144,7 @@ export default class Utils { prompt = (msg, inputAttrs, onConfirm, onCancel) => { Dialog.prompt({ scroll: 'keep', - message: msg, + message: this.escapeHTML(msg), confirmText: this.i18n.t('globals.buttons.ok'), cancelText: this.i18n.t('globals.buttons.cancel'), inputAttrs: {