From 04a6bb5c22ae84cf2e31b353e4f05667ef38414d Mon Sep 17 00:00:00 2001 From: dickreckard Date: Wed, 28 May 2014 23:30:34 +0200 Subject: [PATCH] added SECURITY so that new lines doesnt allow code and doesnt break the whole things --- webapp.html | 8 ++------ 1 file changed, 2 insertions(+), 6 deletions(-) diff --git a/webapp.html b/webapp.html index 528ab05..4569361 100644 --- a/webapp.html +++ b/webapp.html @@ -144,16 +144,12 @@ document.getElementById( 'send' ).onclick = function() { else{ var namm= document.getElementById('name').value; } - - outStr += new Date().getTime() + ' ' + namm + '///' + document.getElementById('message').value + '\n'; + var mess = document.getElementById('message').value.replace(/\r?\n/g, "
"); + outStr += new Date().getTime() + ' ' + namm + '///' + mess + '\n'; localStorage.setItem( 'outbox', outStr ); updateOutboxView(); checkOutbox(); document.getElementById('message').value = ''; - //localStorage.setItem( - // new Date().getTime(), - // document.getElementById('message').value ); - //updateList(); }; function checkOutbox() { var outStr = localStorage.getItem( 'outbox' );