mirror of
https://github.com/inverse-inc/sogo.git
synced 2026-10-08 13:27:15 +00:00
Simplify sanitization of accepted HTML attributes
This will avoid converting & to an HTML entity.
This commit is contained in:
1 parent
1ac2ec7ad6
commit
c6dbb88dc1
1 file changed
+2
-1
@@ -686,7 +686,8 @@ static NSData* _sanitizeContent(NSData *theData)
|
||||
|
||||
if (!skipAttribute)
|
||||
[resultPart appendFormat: @" %@=\"%@\"",
|
||||
name, [value safeStringByEscapingXMLString: NO]];
|
||||
name, [value stringByReplacingString: @"\""
|
||||
withString: @""]];
|
||||
}
|
||||
|
||||
if ([VoidTags containsObject: lowerName])
|
||||
|
||||
Reference in new issue
Block a user