mastodon api: sanitize the bio HTML

......@@ -36,7 +36,7 @@ defmodule Pleroma.Web.MastodonAPI.AccountView do
followers_count: user_info.follower_count,
following_count: user_info.following_count,
statuses_count: user_info.note_count,
note: || "",
note: HtmlSanitizeEx.basic_html( || "",
url: user.ap_id,
avatar: image,
avatar_static: image,
