From dc96562b4084e058846aea9102ef0257461717d6 Mon Sep 17 00:00:00 2001 From: tobi <31960611+tsmethurst@users.noreply.github.com> Date: Fri, 11 Aug 2023 14:40:11 +0200 Subject: [bugfix] Use custom bluemonday policy to disallow inline img tags (#2100) --- internal/processing/account/create.go | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'internal/processing/account/create.go') diff --git a/internal/processing/account/create.go b/internal/processing/account/create.go index 32a59d1ef..1925feb63 100644 --- a/internal/processing/account/create.go +++ b/internal/processing/account/create.go @@ -71,7 +71,7 @@ func (p *Processor) Create( Username: form.Username, Email: form.Email, Password: form.Password, - Reason: text.SanitizePlaintext(reason), + Reason: text.SanitizeToPlaintext(reason), PreApproved: !config.GetAccountsApprovalRequired(), // Mark as approved if no approval required. SignUpIP: form.IP, Locale: form.Locale, -- cgit v1.2.3