Datatable Editor inline embeded iframe
Datatable Editor inline embeded iframe
data:image/s3,"s3://crabby-images/bfbd6/bfbd6032a0acbb15d116880cad89262d611d6d82" alt="fvsadem"
Hi,
I use ckeditor to save a rich text in my database with Datatable Editor.
ckeditor work great with the inline editor but when i would like to add an iframe to my rich text, it's was escaped !
So this is useless...
I tried to use a simple text field instead of ckeditor but the tag <iframe>
was also escaped.
Is there a setting for not escaping a field in datatable Editor ? or others solutions ?
Thanks
This discussion has been closed.
Answers
What are you using on the server-side? If you are using one of our libraries, it is probably seeing that as a possible XSS attack. You could add
->xss(false)
(PHP) or.Xss(false)
(.NET) to theField
parameter in question to stop it doing that encoding.Allan