From c5dae38d70973f3953e5ba409ef92229b8a8b74a Mon Sep 17 00:00:00 2001 From: Jack Date: Fri, 23 Jul 2021 01:31:27 +0100 Subject: [PATCH] url check --- src/js/config.js | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/src/js/config.js b/src/js/config.js index 46e4dcd57..00a96408f 100644 --- a/src/js/config.js +++ b/src/js/config.js @@ -1480,9 +1480,10 @@ export function setCustomBackground(value, nosave) { } value = value.trim(); if ( - /(https|http):\/\/(www\.|).+\..+\/.+(\.png|\.gif|\.jpeg|\.jpg)/gi.test( + (/(https|http):\/\/(www\.|).+\..+\/.+(\.png|\.gif|\.jpeg|\.jpg)/gi.test( value - ) || + ) && + !/[<>]/.test(value)) || value == "" ) { config.customBackground = value;