Zeile 58 | Zeile 58 |
---|
$.sceditor.formats.bbcode .set('align', { html: function (element, attrs, content) {
|
$.sceditor.formats.bbcode .set('align', { html: function (element, attrs, content) {
|
return '<div align="' + (attrs.defaultattr || 'left') + '">' + content + '</div>';
| return '<div align="' + ($.sceditor.escapeEntities(attrs.defaultattr) || 'left') + '">' + content + '</div>';
|
}, isInline: false });
| }, isInline: false });
|
Zeile 168 | Zeile 168 |
---|
if (size < 0) { size = 0; }
|
if (size < 0) { size = 0; }
|
return '<font data-scefontsize="' + attrs.defaultattr + '" size="' + size + '">' + content + '</font>';
| return '<font data-scefontsize="' + $.sceditor.escapeEntities(attrs.defaultattr) + '" size="' + size + '">' + content + '</font>';
|
} });
| } });
|
Zeile 218 | Zeile 218 |
---|
var author = '', $elm = $(element), $cite = $elm.children('cite').first();
|
var author = '', $elm = $(element), $cite = $elm.children('cite').first();
|
$cite.html($cite.text());
| |
if ($cite.length === 1 || $elm.data('author')) { author = $cite.text() || $elm.data('author');
| if ($cite.length === 1 || $elm.data('author')) { author = $cite.text() || $elm.data('author');
|
Zeile 244 | Zeile 243 |
---|
var data = '';
if (attrs.pid)
|
var data = '';
if (attrs.pid)
|
data += ' data-pid="' + attrs.pid + '"';
| data += ' data-pid="' + $.sceditor.escapeEntities(attrs.pid) + '"';
|
if (attrs.dateline)
|
if (attrs.dateline)
|
data += ' data-dateline="' + attrs.dateline + '"';
| data += ' data-dateline="' + $.sceditor.escapeEntities(attrs.dateline) + '"';
|
if (typeof attrs.defaultattr !== "undefined")
|
if (typeof attrs.defaultattr !== "undefined")
|
content = '<cite>' + attrs.defaultattr.replace(/ /g, ' ') + '</cite>' + content;
| content = '<cite>' + $.sceditor.escapeEntities(attrs.defaultattr).replace(/ /g, ' ') + '</cite>' + content;
|
return '<blockquote' + data + '>' + content + '</blockquote>'; },
| return '<blockquote' + data + '>' + content + '</blockquote>'; },
|
Zeile 280 | Zeile 279 |
---|
html: function (token, attrs, content) { if (typeof attrs.defaultattr == 'string' && attrs.defaultattr != '' && attrs.defaultattr != '{defaultattr}') { return '<font face="' +
|
html: function (token, attrs, content) { if (typeof attrs.defaultattr == 'string' && attrs.defaultattr != '' && attrs.defaultattr != '{defaultattr}') { return '<font face="' +
|
attrs.defaultattr +
| $.sceditor.escapeEntities(attrs.defaultattr) +
|
'">' + content + '</font>'; } else { return content;
| '">' + content + '</font>'; } else { return content;
|