mardi 24 février 2015

Is it dangerous to allow users to edit the CSS styles?



I'm working on a blog site, and I plan to allow bloggers to completely edit the style sheet for their own blogs


I assume this isn't dangerous, since CSS is client side, but I thought it'd be best to check. If there a way someone could use this feature to implant backdoors and such into my site?





Aucun commentaire:

Enregistrer un commentaire