From 287c7f8da5d64082b515df41bb897ea424fb131a Mon Sep 17 00:00:00 2001 From: Rotzbua Date: Mon, 3 Mar 2025 21:04:22 +0100 Subject: [PATCH] chore(editor): update `DOMPurify` flag DOMPurify 2.1.0: Removed the SAFE_FOR_JQUERY flag (we are safe by default now for jQuery) https://github.com/cure53/DOMPurify/releases/tag/2.1.0 --- .../node_modules/@node-red/editor-client/src/js/ui/utils.js | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/packages/node_modules/@node-red/editor-client/src/js/ui/utils.js b/packages/node_modules/@node-red/editor-client/src/js/ui/utils.js index 49ad15d87..2de4b1131 100644 --- a/packages/node_modules/@node-red/editor-client/src/js/ui/utils.js +++ b/packages/node_modules/@node-red/editor-client/src/js/ui/utils.js @@ -121,7 +121,7 @@ RED.utils = (function() { function renderMarkdown(txt) { var rendered = _marked.parse(txt); - var cleaned = DOMPurify.sanitize(rendered, {SAFE_FOR_JQUERY: true}) + const cleaned = DOMPurify.sanitize(rendered); return cleaned; }