This allows us to support more attributes while not opening the door to XSS attacks.

CommentFileSizeAuthor
#1 856694_media_whitelist.patch3.87 KBJacobSingh

Comments

JacobSingh’s picture

Status: Active » Fixed
StatusFileSize
new3.87 KB

committed

aaron’s picture

for fine tuning & future support, might want a hook_media_attributes_whitelist_alter() or something?

aaron’s picture

or maybe using media_variable_get('whitelist') so it can at least be overridden by $conf

Status: Fixed » Closed (fixed)

Automatically closed -- issue fixed for 2 weeks with no activity.