BARBELITH underground
 

Subcultural engagement for the 21st Century...
Barbelith is a new kind of community (find out more)...
You can login or register.


HTML error on Magicks, Sciences, Psychologies and Expositions... thread

 
 
Nietzsch E. Coyote
04:59 / 09.04.02
The Thread Magicks, Sciences, Psychologies and Expositions... shows up on my computer as blank white. Only this thread. I wasn't sure where to tell someone so... here.
 
 
Tom Coates
06:51 / 09.04.02
Yes - this is the right place to tell people - but as far as I can tell it seems to be working fine... Anyone else?
 
 
cusm
15:33 / 09.04.02
It does the same for my browser, Netscrape 4.7.9 for Linux. I think the problem was bad html in post 92862 with the I and /I tags used. I cleaned it up, as soon as someone else clicks ok on my changes we'll see if that helped.
 
 
cusm
16:34 / 09.04.02
It looks like that did it. I think this illustrates an important point to be aware of. If you enable html in messages, you open a whole can of worms of possible mess. If someone wanted to screw around, they could cause all sorts of havok by closing table tags, inserting javascript etc. The fix requires building in an html preprocessor in the board cgi to check for such things, limit html to only allow certain formatting tags, and check for errors like in this post so the topic doesn't become inaccessible.

That's what I liked about the UBB code, it was meta html that translated into html, but didn't allow for tags to actually be processed, which is just a matter of escaping out < and >. I think if the UBB code processing could be hacked back into the board and html disabled, it'll save us a lot of administration in the long run. As well, security. With html enabled, there is always the possibility of the board being hacked by a cleverly crafted message.

In the mean time, this is something for moderators to keep an eye on. We may need to clean up messages from time to time to restore topics like this one.
 
 
Tom Coates
11:08 / 10.04.02
Absolutely true - but Cal has in fact already built in something to stop some kinds of HTML being used. Far from everything has been made safe, but the vast majority has been...
 
 
Nietzsch E. Coyote
04:10 / 11.04.02
IT is the 4.X netscape that can't format it.

6.2 netscape sees it fine.
 
  
Add Your Reply