From 4264975a167caf0fef3d04c94b6f448a81b02b22 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Andr=C3=A9=20Jaenisch?= Date: Wed, 21 Feb 2024 18:13:27 +0100 Subject: [PATCH] fix: prevent XSS MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit I learned that I don't have to pass in the html thingy. Signed-off-by: André Jaenisch --- src/lib/components/atoms/DisplayName.svelte | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/src/lib/components/atoms/DisplayName.svelte b/src/lib/components/atoms/DisplayName.svelte index 0ec3627..1ccc85a 100644 --- a/src/lib/components/atoms/DisplayName.svelte +++ b/src/lib/components/atoms/DisplayName.svelte @@ -15,6 +15,6 @@

{$_('page.profile.heading')} - {@html displayName} + {displayName}

-

({@html pronoun})

+

({pronoun})