Hello, I am little bit worried about a possibility that somebody can insert HTML code into a blog HTML editor. Is it possible? Especially I am scared about that somebody can isert iFrame code that can get excecuted by elgg page......
Thanks Martin
info@elgg.org
Security issues should be reported to security@elgg.org!
©2014 the Elgg Foundation
Elgg is a registered trademark of Thematic Networks.
Cover image by RaĆ¼l Utrera is used under Creative Commons license.
Icons by Flaticon and FontAwesome.
- Nikolai Shcherbin@rivervanrain
Nikolai Shcherbin - 0 likes
- basoma06@basoma06
basoma06 - 0 likes
You must log in to post replies.With activated htmlawed this impossible by default
Many thanks! I found this plugin under the MOD folder. I was not aware that this option is available by default :)