OverviewStarting in 24.2, the Styled Text Editor Component is available directly in the product. Consider using this in place of the plug-in moving forward. For more information, review: https://docs.appian.com/suite/help/latest/Styled_Text_Editor_Component.html
Visit https://community.appian.com/w/the-appian-playbook/1378/end-user-rich-text-editor-component for more information. If you have any problems installing or using the component, please see the https://community.appian.com/w/the-appian-playbook/1603/rich-text-editor-component-plug-in-troubleshooting-guide
Key Features & Functionality
Supported Browsers: Chrome, Firefox, Edge, SafariSupported on Mobile
Quill is vulnerable to stored cross-site scripting (XSS) because it does not correctly sanitize user input before it is processed. An attacker could exploit this flaw to execute malicious JavaScript code in a victim's browser, which can result in the theft of session tokens or cookies.
Please provide more details about that vulnerability. If this is a CVE, it would be helpful if you could link to it on https://cve.mitre.org/. I tried searching for "BDSA-2021-1834" but got no results.
Hi Team,
We found one medium security risk vulnerability when we run the scan,
Vulnerability id-BDSA-2021-1834
can you fix this from your end.
Hi Marco - are you able to take a screenshot of the Network tab of the developer console and send that?
Hello - please refer to the Troubleshooting Guide and follow the steps outlined there. Hopefully that'll help you resolve your issue: community.appian.com/.../rich-text-editor-component-plug-in-troubleshooting-guide
Hello,
I'm trying to use this plug-in but when I add the richTextField component to an interface nothing is displayed:
Can you please advise what I am missing.
Thank you.
Hi Marco - I see a 403 error in the console which means some request was forbidden. To understand where that's coming from, can you show us the output of the Network tab please?
Can you inspect the icon of the image that is being displayed and let us know what the source is?
It should be in the format of:
https://yoursite.appiancloud.com/suite/doc/1234where "1234" is a the ID of the uploaded Appian document on your site. If that's the case, you need to set the conf.content.download.byId property to true and restart your site. That can be accomplished with an Appian Support ticket if you don't have access to restart the server.
Good morning,
thank you for your reply. I followed the steps listed on above link https://community.appian.com/w/the-appian-playbook/1603/rich-text-editor-component-plug-in-troubleshooting-guide#usage and I see this errors listed in the console tab.Thanks in advance!
Please confirm you've followed the steps listed in https://community.appian.com/w/the-appian-playbook/1378/end-user-rich-text-editor-component#imageuploads, especially that you've set the conf.content.download.byId property to true.
Otherwise, follow the steps listed on https://community.appian.com/w/the-appian-playbook/1603/rich-text-editor-component-plug-in-troubleshooting-guide#usage to review the network traffic and reply and let us know what the response to the image request is.