Prechádzať zdrojové kódy

Try to fix Broken Hyperlinks in Markdown to HTML conversion.

Thanks to xet7 !

Fixes #5932
Lauri Ojansivu 1 týždeň pred
rodič
commit
bbbd3abf06
1 zmenil súbory, kde vykonal 1 pridanie a 1 odobranie
  1. 1 1
      packages/markdown/src/secureDOMPurify.js

+ 1 - 1
packages/markdown/src/secureDOMPurify.js

@@ -14,7 +14,7 @@ export function getSecureDOMPurifyConfig() {
     ],
     // Block dangerous attributes that can cause XSS and CSS injection
     FORBID_ATTR: [
-      'xlink:href', 'href', 'onload', 'onerror', 'onclick', 'onmouseover',
+      'xlink:href', 'onload', 'onerror', 'onclick', 'onmouseover',
       'onfocus', 'onblur', 'onchange', 'onsubmit', 'onreset', 'onselect',
       'onunload', 'onresize', 'onscroll', 'onkeydown', 'onkeyup', 'onkeypress',
       'onmousedown', 'onmouseup', 'onmouseover', 'onmouseout', 'onmousemove',