]> cat aescling's git repositories - mastodon.git/commitdiff
Fix sanitizing lists contents (#11354)
authorThibG <thib@sitedethib.com>
Thu, 18 Jul 2019 23:44:58 +0000 (01:44 +0200)
committerEugen Rochko <eugen@zeonfederated.com>
Thu, 18 Jul 2019 23:44:58 +0000 (01:44 +0200)
* Add test

* Fix code for sanitizing nested lists stripping all tags

app/lib/sanitize_config.rb
spec/lib/sanitize_config_spec.rb

index e82a2a33aa1ad456160ee4801d80f5aa5806bb6a..aba8ce9f615cbb611b8f70ec3f6599918b2ce0df 100644 (file)
@@ -25,6 +25,8 @@ class Sanitize
       case env[:node_name]
       when 'li'
         env[:node].traverse do |node|
+          next unless %w(p ul ol li).include?(node.name)
+
           node.add_next_sibling('<br>') if node.next_sibling
           node.replace(node.children) unless node.text?
         end
index bb3cf6f0b238a2c324110a8ae3953a2309d88139..54bd8693cc871103b6f45026c536843701019a3f 100644 (file)
@@ -22,5 +22,9 @@ describe Sanitize::Config do
     it 'converts ul inside ul' do
       expect(Sanitize.fragment('<ul><li>Foo</li><li><ul><li>Bar</li><li>Baz</li></ul></li></ul>', subject)).to eq '<p>Foo<br>Bar<br>Baz</p>'
     end
+
+    it 'keep links in lists' do
+      expect(Sanitize.fragment('<p>Check out:</p><ul><li><a href="https://joinmastodon.org" rel="nofollow noopener" target="_blank">joinmastodon.org</a></li><li>Bar</li></ul>', subject)).to eq '<p>Check out:</p><p><a href="https://joinmastodon.org" rel="nofollow noopener" target="_blank">joinmastodon.org</a><br>Bar</p>'
+    end
   end
 end