Skip to content

Commit

Permalink
fix: use a sandboxed environment (#763)
Browse files Browse the repository at this point in the history
  • Loading branch information
c0rydoras committed Jun 12, 2024
1 parent 696f920 commit a1edd39
Showing 1 changed file with 3 additions and 2 deletions.
5 changes: 3 additions & 2 deletions document_merge_service/api/jinja.py
Original file line number Diff line number Diff line change
Expand Up @@ -6,7 +6,8 @@
from django.utils.translation import to_locale
from docx.shared import Mm
from docxtpl import InlineImage, Listing
from jinja2 import Environment, pass_context
from jinja2 import pass_context
from jinja2.sandbox import SandboxedEnvironment
from rest_framework.exceptions import ValidationError


Expand Down Expand Up @@ -98,6 +99,6 @@ def get_jinja_filters():


def get_jinja_env():
jinja_env = Environment(extensions=settings.DOCXTEMPLATE_JINJA_EXTENSIONS)
jinja_env = SandboxedEnvironment(extensions=settings.DOCXTEMPLATE_JINJA_EXTENSIONS)
jinja_env.filters.update(get_jinja_filters())
return jinja_env

0 comments on commit a1edd39

Please sign in to comment.