Difference between revisions of "User talk:John"

From eagle-rock.org
Line 9: Line 9:
 
Note that there is a warning at the top regarding security risks of using the extension. There is a solution proposed but I'd like your opinion before going forward with this.
 
Note that there is a warning at the top regarding security risks of using the extension. There is a solution proposed but I'd like your opinion before going forward with this.
  
'''Solution:''' strictly validate user input and/or apply escaping to all characters that have a special meaning in HTML http://www.mediawiki.org/wiki/EmbedVideoPlus
+
'''Solution:''' strictly validate user input and/or apply escaping to all characters that have a special meaning in HTML http://www.mediawiki.org/wiki/Cross-site_scripting#Stopping_Cross-site_scripting

Revision as of 07:08, 7 January 2012

Please use this page to inform me of major edits you wish to perform. Just add the link to the page that you're working on and write down the details of the edit in the Discussion that belongs to the page. DOn't forget to add your signature.


Edits to discuss

  • Adding embed function for videos.

John: I've found an extension that allows for video embed on Wiki pages. Before I install it I'd like you to look at the information page for EmbedVideosPlus http://www.mediawiki.org/wiki/EmbedVideoPlus.

Note that there is a warning at the top regarding security risks of using the extension. There is a solution proposed but I'd like your opinion before going forward with this.

Solution: strictly validate user input and/or apply escaping to all characters that have a special meaning in HTML http://www.mediawiki.org/wiki/Cross-site_scripting#Stopping_Cross-site_scripting