commit | 78d4cb46eb9d6cb1cd0f84f73f61110819b7a830 | [log] [tgz] |
---|---|---|
author | Tao Zhou <taoalpha@google.com> | Thu Jun 25 17:29:24 2020 +0200 |
committer | Tao Zhou <taoalpha@google.com> | Thu Jun 25 17:29:24 2020 +0200 |
tree | c68c80c1c52a07854d4d9992fcc1a1fec12c5b4e | |
parent | 2bbbda08f212489ed0ef5d2fb82e680f7cb685f3 [diff] |
Use appendChild instead of innerHTML for security reason Change-Id: I2d889d4356e3b1e9a72fd4c165cc47a1789b2a64
diff --git a/gr-resemble-diff-mode/gr-resemble-diff-mode.js b/gr-resemble-diff-mode/gr-resemble-diff-mode.js index c7b7cba..cd0711a 100644 --- a/gr-resemble-diff-mode/gr-resemble-diff-mode.js +++ b/gr-resemble-diff-mode/gr-resemble-diff-mode.js
@@ -188,7 +188,7 @@ _handleFullScreen() { const w = window.open('about:blank', '_blank'); - w.document.body.innerHTML = this.$.imageDiff.outerHTML; + w.document.body.appendChild(this.$.imageDiff.cloneNode(true)); } }