Vladimir Gorej
a616cb471d
fix(Markdown): render markdown in more secure way
...
This commit changes markdown sanitization behaviour in following way:
class, style and data-* attributes are removed by default. These attributes
open possible vulnerability vectors to attackers.
The original behavior of sanitizer (before this commit) can be enabled by *useUnsafeMarkdown* configuration option.
Use this configuration option with caution and only in cases when you know
what you're doing.
2020-06-11 21:51:15 +02:00
tomdegoede
fc3ed30f3d
improvement: Move inline styles to SCSS instead ( #5578 )
...
* fix: convert propStyle to propClass
2020-06-10 16:39:48 -07:00
kyle
9155eb946e
fix: always display locally-available title property as a model's name ( #4542 )
...
* fix: always display locally-available `title` property as a model's name
* fix failing unit test
* add e2e test case
2018-05-10 22:15:36 -07:00
maryscar
3d7a00c0d0
improve: visibility & accessibility ( #4202 )
...
* Increase font weight for property-format
* Increase font weight for model property examples.
2018-02-09 19:34:38 -08:00
kyle
32ff344bdd
Adjust formatting of method calls
2017-11-23 00:22:48 -06:00
Greg Thompson
91dab7b166
getConfigs prop expansion; limit extension render based on config setting
2017-11-09 10:22:41 -06:00
Greg Thompson
4b453e3535
use property component in array-model and primitive-model
2017-11-02 15:20:20 -05:00
Owen Conti
44ece46cd3
Fixes #3633
...
Make sure PrimitiveModel uses the schema's title first and then falls back to the passed-in `name` property. Added enzyme test for functionality.
2017-09-17 09:49:13 -06:00
Owen Conti
d64dfc4252
Fixes #3500 - Fix missing names for primitive models
2017-08-01 20:46:41 -06:00
Owen Conti
15e105c931
Merge branch 'master' of github.com:swagger-api/swagger-ui into bug/3102-unguarded-expressions
...
# Conflicts:
# src/core/components/model.jsx
# src/core/components/models.jsx
2017-07-03 16:12:31 -06:00
Owen Conti
d27cae0085
Work on #3102 . Moved all the components out of model.jsx into their own files so they can be grabbed via getComponent()
2017-06-28 22:07:07 -06:00