How can I allow my user to insert HTML code, without risks? (not only technical risks)

后端 未结 10 803
一生所求
一生所求 2020-12-09 05:41

I developed a web application, that permits my users to manage some aspects of a web site dynamically (yes, some kind of cms) in LAMP environment (debian, apache, php, mysql

10条回答
  •  囚心锁ツ
    2020-12-09 06:12

    You might want to consider, rather than allowing HTML at all, implementing some standin for HTML like BBCode or Markdown.

提交回复
热议问题