From cd22b37f615b5da09eecb61bec5190522d7c0459 Mon Sep 17 00:00:00 2001 From: Aevann1 Date: Thu, 17 Feb 2022 03:30:59 +0200 Subject: [PATCH] fd --- files/helpers/sanitize.py | 13 +++++++++++++ 1 file changed, 13 insertions(+) diff --git a/files/helpers/sanitize.py b/files/helpers/sanitize.py index c3b54eb58..3cee1b248 100644 --- a/files/helpers/sanitize.py +++ b/files/helpers/sanitize.py @@ -8,6 +8,8 @@ import re from mistletoe import markdown from json import loads, dump from random import random, choice +import signal +import time db = db_session() marseys = tuple(x[0] for x in db.query(Marsey.name).all()) @@ -102,8 +104,17 @@ allowed_protocols = ['http', 'https'] allowed_styles = ['color', 'background-color', 'font-weight', 'text-align'] + +def handler(signum, frame): + print("Forever is over!") + raise Exception("end of time") + + def sanitize(sanitized, noimages=False, alert=False, comment=False, edit=False): + signal.signal(signal.SIGALRM, handler) + signal.alarm(1) + if sanitized.count(':') > 100: abort(418) if sanitized.count('@') > 50: abort(418) @@ -283,6 +294,8 @@ def sanitize(sanitized, noimages=False, alert=False, comment=False, edit=False): marsey.count += 1 g.db.add(marsey) + signal.alarm(0) + return sanitized