修复访问日志XSS漏洞

This commit is contained in:
GoEdgeLab
2022-02-23 17:34:54 +08:00
parent 9337f73817
commit 7df7c1957c
3 changed files with 12 additions and 10 deletions

View File

@@ -25,9 +25,10 @@ Vue.component("keyword", {
},
methods: {
encodeHTML: function (s) {
s = s.replace("&", "&")
s = s.replace("<", "&lt;")
s = s.replace(">", "&gt;")
s = s.replace(/&/g, "&amp;")
s = s.replace(/</g, "&lt;")
s = s.replace(/>/g, "&gt;")
s = s.replace(/"/g, "&quot;")
return s
}
},