mirror of
https://github.com/HabitRPG/habitica.git
synced 2025-12-18 07:07:35 +01:00
fix(xss): Update site to use remarkable instead of marked
https://snyk.io/vuln/npm%3Amarked%3A20150520 https://github.com/chjj/marked/pull/592
This commit is contained in:
committed by
Blade Barringer
parent
43f8e943f6
commit
867146dc19
@@ -4,6 +4,10 @@ var router = express.Router();
|
||||
var _ = require('lodash');
|
||||
var locals = require('../middlewares/locals');
|
||||
var i18n = require('../libs/i18n');
|
||||
var Remarkable = require('remarkable');
|
||||
var md = new Remarkable({
|
||||
html: true,
|
||||
});
|
||||
|
||||
const TOTAL_USER_COUNT = '1,100,000';
|
||||
|
||||
@@ -26,7 +30,7 @@ _.each(pages, function(name){
|
||||
router.get('/static/' + name, i18n.getUserLanguage, locals, function(req, res) {
|
||||
res.render( 'static/' + name, {
|
||||
env: res.locals.habitrpg,
|
||||
marked: require('marked'),
|
||||
md: md,
|
||||
userCount: TOTAL_USER_COUNT
|
||||
});
|
||||
});
|
||||
@@ -40,7 +44,7 @@ _.each(shareables, function(name){
|
||||
router.get('/social/' + name, i18n.getUserLanguage, locals, function(req, res) {
|
||||
res.render( 'social/' + name, {
|
||||
env: res.locals.habitrpg,
|
||||
marked: require('marked'),
|
||||
md: md,
|
||||
userCount: TOTAL_USER_COUNT
|
||||
});
|
||||
});
|
||||
|
||||
Reference in New Issue
Block a user