From 242f86bb90159f29a6b373f0c165df350e866ec9 Mon Sep 17 00:00:00 2001 From: duckietm Date: Wed, 25 Feb 2026 11:17:51 +0100 Subject: [PATCH] =?UTF-8?q?=F0=9F=94=92=20Small=20security=20fix=20to=20no?= =?UTF-8?q?t=20allow=20dangerous=20html=20code?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- .../widgets/avatar-info/menu/AvatarInfoWidgetAvatarView.tsx | 4 +--- .../widgets/avatar-info/menu/AvatarInfoWidgetNameView.tsx | 4 +--- 2 files changed, 2 insertions(+), 6 deletions(-) diff --git a/src/components/room/widgets/avatar-info/menu/AvatarInfoWidgetAvatarView.tsx b/src/components/room/widgets/avatar-info/menu/AvatarInfoWidgetAvatarView.tsx index 0868721..10ea4fe 100644 --- a/src/components/room/widgets/avatar-info/menu/AvatarInfoWidgetAvatarView.tsx +++ b/src/components/room/widgets/avatar-info/menu/AvatarInfoWidgetAvatarView.tsx @@ -203,9 +203,7 @@ export const AvatarInfoWidgetAvatarView: FC = p return ( - GetUserProfile(avatarInfo.webID) }> - { avatarInfo.name } - + GetUserProfile(avatarInfo.webID) } dangerouslySetInnerHTML={ { __html: `${ avatarInfo.name }` } }> { (mode === MODE_NORMAL) && <> { canRequestFriend(avatarInfo.webID) && diff --git a/src/components/room/widgets/avatar-info/menu/AvatarInfoWidgetNameView.tsx b/src/components/room/widgets/avatar-info/menu/AvatarInfoWidgetNameView.tsx index b694d37..bfa7b41 100644 --- a/src/components/room/widgets/avatar-info/menu/AvatarInfoWidgetNameView.tsx +++ b/src/components/room/widgets/avatar-info/menu/AvatarInfoWidgetNameView.tsx @@ -24,9 +24,7 @@ export const AvatarInfoWidgetNameView: FC = props return ( -
- { nameInfo.name } -
+
); };