diff --git a/public/js/render.js b/public/js/render.js index 9c1fa27..5c2b017 100644 --- a/public/js/render.js +++ b/public/js/render.js @@ -3,6 +3,10 @@ var whiteListAttr = ['id', 'class', 'style']; var filterXSSOptions = { allowCommentTag: true, + escapeHtml: function (html) { + // to allow html comment in multiple lines + return html.replace(/<(.*?)>/g, '<$1>'); + }, onIgnoreTag: function (tag, html, options) { // allow style in html if (whiteListTag.indexOf(tag) !== -1) {