diff --git a/app/assets/javascripts/discourse/tests/unit/lib/sanitizer-test.js b/app/assets/javascripts/discourse/tests/unit/lib/sanitizer-test.js index 56d4385d6f6..5bebc07817d 100644 --- a/app/assets/javascripts/discourse/tests/unit/lib/sanitizer-test.js +++ b/app/assets/javascripts/discourse/tests/unit/lib/sanitizer-test.js @@ -77,6 +77,24 @@ module("Unit | Utility | sanitizer", function (hooks) { "it allows iframe to OpenStreetMap" ); + cooked( + `BEFORE\n\n\n\nAFTER`, + `

BEFORE

\n\n

AFTER

`, + "it strips unauthorized iframes - unallowed src" + ); + + cooked( + `BEFORE\n\n\n\nAFTER`, + `

BEFORE

\n\n

AFTER

`, + "it strips unauthorized iframes - empty src" + ); + + cooked( + `BEFORE\n\n