mirror of
https://github.com/NodeBB/NodeBB.git
synced 2026-06-18 18:51:38 +02:00
escape url
This commit is contained in:
@@ -33,7 +33,7 @@ define('pictureCropper', ['translator', 'cropper', 'benchpress'], function (tran
|
||||
module.handleImageCrop = function (data, callback) {
|
||||
$('#crop-picture-modal').remove();
|
||||
Benchpress.parse('modals/crop_picture', {
|
||||
url: data.url,
|
||||
url: utils.escapeHTML(data.url),
|
||||
}, function (cropperHtml) {
|
||||
translator.translate(cropperHtml, function (translated) {
|
||||
var cropperModal = $(translated);
|
||||
|
||||
Reference in New Issue
Block a user