Javascript in posts

Quote · 1 Apr 2009

That would be very very bad. I don't know of a way to do this, but you don't want to allow it. It would be dangerous. Javascript can be used to do all kinds of nasty stuff.

Hi i was wondering if anyone new how to place javascript in the forum post because i would like to offer the facility to my users. I would like to allow my users to place javascript in their posts. Any help please? need help really quick!!!

https://www.deanbassett.com
Quote · 1 Apr 2009
Quote · 1 Apr 2009

I believe if you edit yoursite.com/plugins/safehtml/safehtml.php so that the <script> tag is not removed from html you can probably place all the adsense code in a post.

.

When you do that however, I would suggest you place a large banner at the top of every page on your site that reads

"Please Hack This Site"

.

The only safe way to do it would be to ues a real forum script like vBulletin or Invision and allow users to place ads using custom BB Code.

My opinions expressed on this site, in no way represent those of Boonex or Boonex employees.
Quote · 1 Apr 2009

Hi Jon,

I quite agree with the other responders. Allowing JS in forum posts would create a bigger hole in security than anything Bill Gates could ever build into Windows.

Consider this scenario: A less-than-scrupulous poster could embed a snippet of JS in their post that surreptitiously (without being visibly noticed) emails spam to 10 million email addresses using your server's sendmail function (and IP address) to do it.

Guess who's going to get shut down as a result of all of the spam complaints? (Hint: It won't be the poster...)

I find it somewhat intriguing that you wish to permit including Adsense within the actual content of a forum, since Adsense ads tend to be oriented and adapted toward the actual subject matter of the page they're placed on (according to Google's secret family recipe). I assume you're wanting to help your members accrue Adsense income through their posts in your forum, which is actually quite admirable in principle.

However the risks far outweigh the benefit, in my opinion.

Quote · 14 Apr 2009
 
 
Below is the legacy version of the Boonex site, maintained for Dolphin.Pro 7.x support.
The new Dolphin solution is powered by UNA Community Management System.