diff --git a/services/auth/source/oauth2/providers.go b/services/auth/source/oauth2/providers.go index 16620fad6d..67367aacd0 100644 --- a/services/auth/source/oauth2/providers.go +++ b/services/auth/source/oauth2/providers.go @@ -56,7 +56,7 @@ func (p *AuthSourceProvider) DisplayName() string { func (p *AuthSourceProvider) IconHTML() template.HTML { if p.iconURL != "" { - img := fmt.Sprintf(`%s`, + img := fmt.Sprintf(`%s`, html.EscapeString(p.iconURL), html.EscapeString(p.DisplayName()), ) return template.HTML(img) diff --git a/web_src/css/base.css b/web_src/css/base.css index 213f3f88f2..3458f760d3 100644 --- a/web_src/css/base.css +++ b/web_src/css/base.css @@ -2289,3 +2289,8 @@ table th[data-sortt-desc] .svg { flex-wrap: wrap; gap: .25rem; } + +.oauth-provider-icon { + max-height: 20px; + max-width: 20px; +}