Sfoglia il codice sorgente

fix: allow custom protocols

Konstantinos Kaloutas 3 anni fa
parent
commit
8dfab3bd13
1 ha cambiato i file con 2 aggiunte e 1 eliminazioni
  1. 2 1
      src/main/frontend/security.cljs

+ 2 - 1
src/main/frontend/security.cljs

@@ -2,7 +2,8 @@
   "Provide security focused fns like preventing XSS attacks"
   (:require ["dompurify" :as DOMPurify]))
 
-(def sanitization-options (clj->js {:ADD_TAGS ["iframe"]}))
+(def sanitization-options (clj->js {:ADD_TAGS ["iframe"]
+                                    :ALLOW_UNKNOWN_PROTOCOLS true}))
 
 (defn sanitize-html
   [html]