Issue #912💬 AnsweredOpened February 28, 2018by nojacko2 reactions

HTML attributes/traits not escaped

Quick answerby artf1

Thanks for the catch James PRs are welcome

Read full answer below ↓

Question

When double quotes are added to an attribute it breaks the HTML.

  1. https://jsfiddle.net/szLp8h4n/
  2. Drag in the link block.
  3. Click the link in the editor
  4. Go to "Component settings" panel
  5. Enter This is an "example" into title field.
  6. Click the view code icon.
  7. Invalid HTML is generated
<div class="c318">Hello World!!!</div>
<a title="This is an  "example"" class="c739">Link</a>

Answers (3)

artfMarch 2, 2018

Thanks for the catch James PRs are welcome

artfMarch 15, 2018

@nojacko I don't build files before the release so if you're using files from dist you're still using the old one

Related Questions and Answers

Continue research with similar issue discussions.

Paid Plugins That Match This Issue

Curated by issue keywords and label relevance to help you ship faster.

View all plugins

Loading paid plugin recommendations...

Free option

Check the open-source GrapesJS plugins on GitHub or run a quick search in our free catalog.

Browse free plugins →
Premium option

Premium plugins ship with support, regular updates, and production-ready features — save days of integration work.

Browse premium plugins →

Browse Plugin Categories

Jump directly to plugin category pages on the marketplace.