From: Hypolite Petovan Date: Mon, 18 Oct 2021 13:13:47 +0000 (-0400) Subject: [markdown] Limit HTML escaping to left chevrons X-Git-Url: https://git.mxchange.org/?a=commitdiff_plain;h=54ef9234993c3955052e7bef0eec311fdf4ccde6;p=friendica-addons.git [markdown] Limit HTML escaping to left chevrons - Right chevrons are used for quotation in Markdown --- diff --git a/markdown/markdown.php b/markdown/markdown.php index 5e819fb5..fe533147 100644 --- a/markdown/markdown.php +++ b/markdown/markdown.php @@ -56,9 +56,10 @@ function markdown_post_local_start(App $a, &$request) { // Escape mentions which username can contain Markdown-like characters // See https://github.com/friendica/friendica/issues/9486 return \Friendica\Util\Strings::performWithEscapedBlocks($body, '/[@!][^@\s]+@[^\s]+\w/', function ($text) { - // Markdown accepts literal HTML but we do not in post body, so we need to escape all chevrons + // Markdown accepts literal HTML but we do not in post body, so we need to escape left chevrons + // (right chevrons are used for quoting in Markdown) // See https://github.com/friendica/friendica/issues/10634 - $text = \Friendica\Util\Strings::escapeHtml($text); + $text = strtr($text, ['<' => '<']); return Markdown::toBBCode($text); });