![]() |
Yea I think CSS is ok
|
Letting CSS is okay, as exploits shouldn't be able to run from it.
|
Then why wordpress has this in the CSS comments?:
Quote:
|
Hmmm, in theory, browsers should parse CSS as CSS and nothing more. Haven't tested this across multiple browsers though.
|
|
Are there any options to limit HTML to "trusted" users, perhaps admins and moderators?
|
Not in stock vBulletin. There is a modification that does this though.
|
CSS can be dangerous too. There are even some vulnerabilities which rely on CSS, such as the cursor exploit.
|
Quote:
|
Not off the top of my head.
|
All times are GMT. The time now is 03:44 AM. |
Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information | |
---|---|
|
|
![]() |
|
Template Usage:
Phrase Groups Available:
|
Included Files:
Hooks Called:
|