mirror of
https://github.com/versia-pub/server.git
synced 2025-12-06 16:38:19 +01:00
temporarily disable sanitization
This commit is contained in:
parent
36671b68b0
commit
e72a4e76d6
|
|
@ -3,7 +3,6 @@ import { convertTextToHtml } from "@formatting";
|
||||||
import { errorResponse, jsonResponse } from "@response";
|
import { errorResponse, jsonResponse } from "@response";
|
||||||
import { sanitizeHtml } from "@sanitization";
|
import { sanitizeHtml } from "@sanitization";
|
||||||
import ISO6391 from "iso-639-1";
|
import ISO6391 from "iso-639-1";
|
||||||
import { sanitize } from "isomorphic-dompurify";
|
|
||||||
import { MediaBackendType } from "media-manager";
|
import { MediaBackendType } from "media-manager";
|
||||||
import type { MediaBackend } from "media-manager";
|
import type { MediaBackend } from "media-manager";
|
||||||
import { client } from "~database/datasource";
|
import { client } from "~database/datasource";
|
||||||
|
|
@ -60,11 +59,11 @@ export default apiRoute<{
|
||||||
|
|
||||||
const sanitizedNote = await sanitizeHtml(note ?? "");
|
const sanitizedNote = await sanitizeHtml(note ?? "");
|
||||||
|
|
||||||
const sanitizedDisplayName = sanitize(display_name ?? "", {
|
const sanitizedDisplayName = display_name ?? ""; /* sanitize(display_name ?? "", {
|
||||||
ALLOWED_TAGS: [],
|
ALLOWED_TAGS: [],
|
||||||
ALLOWED_ATTR: [],
|
ALLOWED_ATTR: [],
|
||||||
});
|
});
|
||||||
|
*/
|
||||||
/* if (!user.source) {
|
/* if (!user.source) {
|
||||||
user.source = {
|
user.source = {
|
||||||
privacy: "public",
|
privacy: "public",
|
||||||
|
|
|
||||||
|
|
@ -1,8 +1,10 @@
|
||||||
import { config } from "config-manager";
|
import { config } from "config-manager";
|
||||||
import { sanitize } from "isomorphic-dompurify";
|
// import { sanitize } from "isomorphic-dompurify";
|
||||||
|
|
||||||
export const sanitizeHtml = async (html: string) => {
|
export const sanitizeHtml = async (html: string) => {
|
||||||
const sanitizedHtml = sanitize(html, {
|
// TEMP: Allow all tags and attributes
|
||||||
|
return html;
|
||||||
|
/* const sanitizedHtml = sanitize(html, {
|
||||||
ALLOWED_TAGS: [
|
ALLOWED_TAGS: [
|
||||||
"a",
|
"a",
|
||||||
"p",
|
"p",
|
||||||
|
|
@ -70,5 +72,5 @@ export const sanitizeHtml = async (html: string) => {
|
||||||
},
|
},
|
||||||
})
|
})
|
||||||
.transform(new Response(sanitizedHtml))
|
.transform(new Response(sanitizedHtml))
|
||||||
.text();
|
.text(); */
|
||||||
};
|
};
|
||||||
|
|
|
||||||
Loading…
Reference in a new issue