Issue T3284
Visible to All Users

HTML question type rendering property as html

created 5 years ago (modified 5 years ago)

Hi Support,

I have this example
https://next.plnkr.co/edit/CNBeeNMnxIZ1fAbl

In the example, I need to render the user info with both user name and his email, so I am using HTML question type to solve it. However, when I am trying verify if it is possible to inject the html into the user object property and it does. e.g: I am injecting HTML into the property 'name' of the object fullUserInfo, it's now showing the injected HTML.

Is this the expectation from the Survey JS library? Do you think if this would introduce a security issue?

Thanks and Regards,
Josh

Answers approved by surveyjs Support

created 5 years ago

Hello,

We've introduced the image question in 1.5.7. Here is the live demo on our site - https://surveyjs.io/Examples/Library?id=questiontype-image&platform=jQuery&theme=modern

I've opened your plunker and see that values from survey data are can be used in the html question.

Could you please refresh the point - whether image question and survey data values cover your needs or do you need any other enhancements in SurveyJS products?

Thanks, Serge
SurveyJS Team

    created 5 years ago

    Hello Josh,
    Yea, we will discuss it here on the next week and likely do something about it. We will comeback.
    In fact, we want to replace html question with markdown question and add questions like image question.

    Thank you,
    Andrew
    SurveyJS Team

      Comments (1)

        Hello,

        Thanks for your comment. Waiting the good news. :)

        Regards,
        Josh