[fix] sanitize src fix
This commit is contained in:
@@ -27,7 +27,7 @@ DOMPurify.addHook("uponSanitizeElement", (node: HTMLElement, data) => {
|
|||||||
});
|
});
|
||||||
|
|
||||||
DOMPurify.addHook("uponSanitizeAttribute", (node, data) => {
|
DOMPurify.addHook("uponSanitizeAttribute", (node, data) => {
|
||||||
if(data.attrName === 'src'){
|
if(data.attrName === 'style'){
|
||||||
data.attrValue = data.attrValue.replace(/(absolute)|(z-index)|(fixed)/g, '')
|
data.attrValue = data.attrValue.replace(/(absolute)|(z-index)|(fixed)/g, '')
|
||||||
}
|
}
|
||||||
})
|
})
|
||||||
|
|||||||
Reference in New Issue
Block a user