Fixes #12355: Exclude additional characters from url encode

This commit is contained in:
x64x6a 2023-04-26 13:02:32 -07:00
parent f867cb3ae0
commit 4355085124

View File

@ -279,7 +279,7 @@ class CustomLink(CloningMixin, ExportTemplatesMixin, WebhooksMixin, ChangeLogged
text = clean_html(text, allowed_schemes)
# Sanitize link
link = urllib.parse.quote_plus(link, safe='/:?&')
link = urllib.parse.quote_plus(link, safe='/:?&=%+[]@#')
# Verify link scheme is allowed
result = urllib.parse.urlparse(link)