fix: only allow http link in iframe render

chore/cli-prune-script
moonrailgun 3 months ago
parent c1365f2b82
commit 9a327dca14

@ -47,8 +47,12 @@ export const Markdown: React.FC<{
iframe: (props) => {
let src = props.src;
if (src?.includes('javascript')) {
return <div>not support run javascript</div>;
if (!src) {
return <div />;
}
if (!src.startsWith('http')) {
return <div>only support http source</div>;
}
if (src && src.includes('?')) {

Loading…
Cancel
Save