Commit 0ef9c499 authored by sajolida's avatar sajolida
Browse files

Use textContent which will sanitize this user input

parent 8e2c1dcb
......@@ -192,7 +192,7 @@ document.addEventListener("DOMContentLoaded", function() {
function showVerifyingDownload(filename) {
hide(document.getElementById("verify-download-wrapper"));
document.getElementById("filename").innerHTML = filename;
document.getElementById("filename").textContent = filename;
show(document.getElementById("verifying-download"));
}
......
Markdown is supported
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment