diff --git a/app/Views/attributes/form.php b/app/Views/attributes/form.php index 8e216af8e..46afb3d23 100644 --- a/app/Views/attributes/form.php +++ b/app/Views/attributes/form.php @@ -192,7 +192,7 @@ } } - $('#definition_list_group').append('
  • ' + value + '
  • ') + $('#definition_list_group').append('
  • ' + DOMPurify.sanitize(value) + '
  • ') .find(':last-child a').click(remove_attribute_value); $('#definition_value').val(''); };