• Ad hoc HTML

    By Mark A Barton 2 decades ago

    Would be good if we could add HTML to a page - within the client using pass thru HTML would be fine. This would allow us to incorporate features (e.g. embedding external image) which would take a while to develop.

    • Some allowed

      By Steve Castledine 2 decades ago

      In iteration 1 I allowed some html. This will be extended to the admin being able to specify html that is allowed. What needs to be watched is the possibility of XSS attacks etc - although 8.51 XPages comes with an out of the box filter - but obviously that is not available yet.

      • html to allow

        By Mark Bryson 2 decades ago

        First of all - thanks for this template, much appreciated.



        I've been asked if it's possible to allow OBJECT, EMBED and PARAM html. It looks like it should be if I could work out what the regexp should be but that's probably unlikely!



        XSS has been an issue for us but isn't always as some sites are for small groups of students and their lecturers.