[Mediawiki-l] Re: <style> tag in template

solo turn soloturn at gmail.com
Thu May 12 09:32:38 UTC 2005


do you know a good example which shows this "VERY dangerous"?
dangerous for whom? if somebody adds a javascript function that
changes the admin password and hopes an admin would click on it?

we do not need real raw html, just the styles. do you see any danger
in having the <style> tag enabled?

-solo

On 5/11/05, Brion Vibber <brion at pobox.com> wrote:
> ... a raw HTML tag is built in to the wiki and
> can be optionally enabled? See DefaultSettings.php.
> 
> Note that raw HTML sections are *very dangerous* on a publically
> editable wiki.



More information about the MediaWiki-l mailing list