mirror of
https://github.com/SillyTavern/SillyTavern.git
synced 2025-01-06 06:38:33 +01:00
Sanitize entered URLs
This commit is contained in:
parent
75382b77ea
commit
21de199b0f
@ -420,7 +420,7 @@ jQuery(async () => {
|
||||
|
||||
const connectButton = windowHtml.find('#assets-connect-button');
|
||||
connectButton.on('click', async function () {
|
||||
const url = String(assetsJsonUrl.val());
|
||||
const url = DOMPurify.sanitize(String(assetsJsonUrl.val()));
|
||||
const rememberKey = `Assets_SkipConfirm_${getStringHash(url)}`;
|
||||
const skipConfirm = localStorage.getItem(rememberKey) === 'true';
|
||||
|
||||
|
Loading…
Reference in New Issue
Block a user