DEV: uses vanilla js and DOM to replace link mentions (PR #13959)

  • uses DOM apis
  • do not concat strings
  • ensures string is set as innerText and not HTML
  • do not work on jquery objects

GitHub

This pull request fixes 1 alert when merging 685058bd7c2ef7e0afcd26c23159127b24fe0a36 into 38199424bc840d2ef002cd1e9bffdbb99191eb47 - view on LGTM.com

fixed alerts:

  • 1 for DOM text reinterpreted as HTML