Skip to content

Commit 9d1bac3

Browse files
committed
sanitize an additional input which was still missing
Signed-off-by: Thomas Jäckle <[email protected]>
1 parent cce2e96 commit 9d1bac3

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

ui/modules/utils.ts

+2-2
Original file line numberDiff line numberDiff line change
@@ -144,8 +144,8 @@ export function addDropDownEntries(target, items, isHeader = false) {
144144
items.forEach((value) => {
145145
const li = document.createElement('li');
146146
li.innerHTML = isHeader ?
147-
`<h6 class="dropdown-header">${value}</h6>` :
148-
`<a class="dropdown-item" href="#">${value}</a>`;
147+
`<h6 class="dropdown-header">${sanitizeHTML(value)}</h6>` :
148+
`<a class="dropdown-item" href="#">${sanitizeHTML(value)}</a>`;
149149
target.appendChild(li);
150150
});
151151
}

0 commit comments

Comments
 (0)