diff --git a/files/routes/settings.py b/files/routes/settings.py index f2d34a088..eb092019b 100644 --- a/files/routes/settings.py +++ b/files/routes/settings.py @@ -332,6 +332,7 @@ def settings_personal_post(v): bio = process_files(request.files, v, bio) if len(bio) > BIO_FRIENDS_ENEMIES_LENGTH_LIMIT: abort(400, f'Your bio is too long (max {BIO_FRIENDS_ENEMIES_LENGTH_LIMIT} characters)') + bio_html = sanitize(bio, blackjack="bio") if len(bio_html) > BIO_FRIENDS_ENEMIES_HTML_LENGTH_LIMIT: abort(400, "Your rendered bio is too long!")