Merge pull request #588 from Xaekai/moretags

Add some various harmless tags to the XSS whitelist
This commit is contained in:
Calvin Montgomery 2016-07-07 23:06:46 -07:00 committed by GitHub
commit 32bb63e06b
2 changed files with 7 additions and 2 deletions

View file

@ -2,7 +2,7 @@
"author": "Calvin Montgomery",
"name": "CyTube",
"description": "Online media synchronizer and chat",
"version": "3.18.0",
"version": "3.18.1",
"repository": {
"url": "http://github.com/calzoneman/sync"
},

View file

@ -5,6 +5,7 @@ var sanitizeHTML = require("sanitize-html");
const ALLOWED_TAGS = [
"button",
"center",
"cite"
"details",
"font",
"h1",
@ -13,8 +14,12 @@ const ALLOWED_TAGS = [
"marquee", // It pains me to do this, but a lot of people use it...
"s",
"section",
"small",
"span",
"summary"
"sub",
"summary",
"sup",
"template"
];
const ALLOWED_ATTRIBUTES = [