HTMLPurifier syntax issue -


I am using HTMLPurifier with this configuration:

  case 'comment' : $ config = HTMLPurifier_Config :: createDefault (); Config- & gt; Set ('core. Encoding', 'utf-8'); $ Config- & gt; Set ('HTML.Allowed', 'iframe [src | width | height | frameborder | acceptable screen], p [style], p, br, hr, center, em, u, ul, li, font, ol, div [class] | Style], span [style], blockquote, strike, b, strong, img [src | alt | class | height | width], a [href | rel], object [width | height | data], absolute [name | Value], embed [source | type | permissions effect | width | height] '); $ Config- & gt; Set ('HTML.SafeIframe' is true); $ Config- & gt; Set ('URI.SafeIframeRegexp', '% ^ // (www.youtube.com/embed/playplayer.vimeo.com/video/)%'); $ Config- & gt; Set ('Cache.DefinitionImpl', null); // TODO: remove it later! break;   

When accepting a YouTube video, the acceptable screen attribute is stripped of why?

The reason for this is that the attribute is not currently supported by safe iframe. You can support yourself using

Comments

Popular posts from this blog

Selenium IDE Conditional Statements -

ruby on rails - How to avoid ActionController::InvalidCrossOriginRequest exception? -

php - Something wrong with this for loop -