Protecting Your Elgg Site
Last Updated on Friday, 8 July 2011 10:06 Written by Rodolfo Hernandez Wednesday, 24 November 2010 08:24
Some people are telling Elgg users to disable a plugin called “HTMLAWED plugin” ( a plugin that comes as default in every Elgg install) so that they can embed content. This is not recommended.
The plugin mentioned above stops users from adding arbitrary HTML/PHP code onto your site that could break your site design and might even allow phishers to embed code in order to steal their passwords.
Learn More
Tags: code, code filter, elgg, elgg security, filter, html, html filter, htmlawed, plugin, protect, protecting, security, site | Posted under Elgg, Security/Vulnerability | 2 Comments

Recent Comments