diff --git a/apps/formbricks-com/lib/cleanHtml.ts b/apps/formbricks-com/lib/cleanHtml.ts index 252b934666..b61697d3e3 100644 --- a/apps/formbricks-com/lib/cleanHtml.ts +++ b/apps/formbricks-com/lib/cleanHtml.ts @@ -38,8 +38,8 @@ export function cleanHtml(str: string): string { function isPossiblyDangerous(name: string, value: string): boolean { let val = value.replace(/\s+/g, "").toLowerCase(); if ( - ["src", "href", "xlink:href"].includes(name) && - (val.includes("javascript:") || val.includes("data:")) + ["src", "href", "xlink:href", "srcdoc"].includes(name) && + (val.includes("javascript:") || val.includes("data:") || val.includes("