Skip to content
This repository was archived by the owner on Aug 26, 2024. It is now read-only.
Merged
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
5 changes: 3 additions & 2 deletions gsoc/models.py
Original file line number Diff line number Diff line change
Expand Up @@ -5,6 +5,7 @@
import json
import bleach
from urllib.parse import urljoin
from bleach.css_sanitizer import CSSSanitizer

from bs4 import BeautifulSoup
from django.db.models.deletion import PROTECT
Expand Down Expand Up @@ -166,12 +167,12 @@ def get_root_comments(self):


def save(self, *args, **kwargs):
css_sanitizer = CSSSanitizer(allowed_css_properties=settings.BLEACH_ALLOWED_STYLES)
tags = settings.BLEACH_ALLOWED_TAGS
attrs = bleach.sanitizer.ALLOWED_ATTRIBUTES
attrs.update(settings.BLEACH_ALLOWED_ATTRS)
styles = settings.BLEACH_ALLOWED_STYLES
self.lead_in = bleach.clean(
self.lead_in, tags=tags, attributes=attrs
self.lead_in, tags=tags, attributes=attrs, css_sanitizer=css_sanitizer
)
soup = BeautifulSoup(self.lead_in, "html5lib")
for iframe_tag in soup.find_all("iframe"):
Expand Down