summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorMatthias Beyer <mail@beyermatthias.de>2020-12-31 15:56:13 +0100
committerMatthias Beyer <mail@beyermatthias.de>2020-12-31 15:57:12 +0100
commit17ef0c35d48629a07e03567e38c5f051e5497bc2 (patch)
treed6ad4a83404e2cdb2d27120ccdf5a7818f873338
parent2289ae102a460afd6ffffa8cff019f5ddd083401 (diff)
Use ammonia to clean user desc before sending to clientcleanup-user-desc
Signed-off-by: Matthias Beyer <mail@beyermatthias.de> Suggested-by: Colin Reeder <colin@vpzom.click> CC: Colin Reeder <colin@vpzom.click>
-rw-r--r--src/routes/api/users.rs4
1 files changed, 3 insertions, 1 deletions
diff --git a/src/routes/api/users.rs b/src/routes/api/users.rs
index ad1d77d..412dec1 100644
--- a/src/routes/api/users.rs
+++ b/src/routes/api/users.rs
@@ -561,9 +561,11 @@ async fn route_unstable_users_get(
}),
};
+ let clean_user_desc = ammonia::clean(row.get(3));
+
let info = RespUserInfo {
base: info,
- description: row.get(3),
+ description: &clean_user_desc,
suspended: if local { Some(row.get(5)) } else { None },
your_note,
};