From 6ec71bc27f23c89f84bfb662ce180af3a9691dd8 Mon Sep 17 00:00:00 2001 From: James Moger <james.moger@gitblit.com> Date: Mon, 27 Oct 2014 10:46:05 -0400 Subject: [PATCH] Fix PluginManager not properly respecting --noverify --- src/main/java/com/gitblit/wicket/panels/MarkdownTextArea.java | 3 ++- 1 files changed, 2 insertions(+), 1 deletions(-) diff --git a/src/main/java/com/gitblit/wicket/panels/MarkdownTextArea.java b/src/main/java/com/gitblit/wicket/panels/MarkdownTextArea.java index f26f7fb..ade92c0 100644 --- a/src/main/java/com/gitblit/wicket/panels/MarkdownTextArea.java +++ b/src/main/java/com/gitblit/wicket/panels/MarkdownTextArea.java @@ -70,7 +70,8 @@ return; } String html = MarkdownUtils.transformGFM(GitBlitWebApp.get().settings(), text, repositoryName); - previewModel.setObject(html); + String safeHtml = GitBlitWebApp.get().xssFilter().relaxed(html); + previewModel.setObject(safeHtml); } public String getText() { -- Gitblit v1.9.1