From 9b0552fd89d66ab0d44fe6884a88c025c40e9db0 Mon Sep 17 00:00:00 2001 From: Sebastian Thomschke Date: Wed, 6 Nov 2024 13:12:10 +0100 Subject: [PATCH] fix: Incomplete URL scheme check in marked.js Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com> --- org.eclipse.tm4e.markdown/marked.js/marked.js | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/org.eclipse.tm4e.markdown/marked.js/marked.js b/org.eclipse.tm4e.markdown/marked.js/marked.js index 3df65e3a1..92e523df6 100644 --- a/org.eclipse.tm4e.markdown/marked.js/marked.js +++ b/org.eclipse.tm4e.markdown/marked.js/marked.js @@ -875,7 +875,7 @@ Renderer.prototype.link = function(href, title, text) { } catch (e) { return ''; } - if (prot.indexOf('javascript:') === 0 || prot.indexOf('vbscript:') === 0) { + if (prot.indexOf('javascript:') === 0 || prot.indexOf('vbscript:') === 0 || prot.indexOf('data:') === 0) { return ''; } }