1
0
mirror of https://github.com/bitwarden/server.git synced 2025-07-06 10:32:49 -05:00

HTML encode sanitized inputs for email templates (#1138)

This commit is contained in:
Kyle Spearrin
2021-02-11 14:39:13 -05:00
committed by GitHub
parent 6cc317c4ba
commit 7c9ea83ad2

View File

@ -503,9 +503,10 @@ namespace Bit.Core.Utilities
public static string SanitizeForEmail(string value) public static string SanitizeForEmail(string value)
{ {
return value.Replace("@", "[at]") var cleanedValue = value.Replace("@", "[at]")
.Replace("http://", string.Empty) .Replace("http://", string.Empty)
.Replace("https://", string.Empty); .Replace("https://", string.Empty);
return HttpUtility.HtmlEncode(cleanedValue);
} }
public static string DateTimeToTableStorageKey(DateTime? date = null) public static string DateTimeToTableStorageKey(DateTime? date = null)