Why javascript gets stripped

ManPullingHairOut“Embed tags, iframes, forms, flash and Javascripts are banned for security concerns. It would be child’s play for a hacker pull your login cookies if they were allowed.” — drmike on the wordpress.com forum

For more detail read:

Why javascript is a security risk

7 Responses to Why javascript gets stripped

  1. kidswereus December 8, 2006 at 8:30 pm

    I think this means my bravenet widget is not going to work in my wordpress blog because it’s in javascript. Oh Well. :D

  2. timethief December 8, 2006 at 11:20 pm

    Yup. No javascript – sorry.

  3. James Ong December 17, 2006 at 12:36 am

    Ok, now i get it. I spent hours trying to get a blog roll into my text widget. HAahahha

    Thanks for all the information here…very useful :)

  4. anilsoni December 17, 2006 at 1:58 pm

    ok i have not used javascript to get executed there. Those were just javascript injections. i m not using javascript in any of my page.

  5. timethief December 17, 2006 at 3:12 pm

    @james ong – *chuckle* You kidder you. Thanks for the thanks. :D

    @anilsoni
    I just wanted to be sure that you understood the limitations that’s all. Thanks for dropping by. :)

  6. icedmocha January 13, 2007 at 7:32 am

    I often wondered and felt a bit petulant that I could not use javascript. It’s good to know the reason. It makes sense.

  7. timethief January 13, 2007 at 9:57 am

    Whenever I think I’ve learned something “illuminating” or otherwise useful here at wordpress I try to find the time to write it up and post it in this blog. This blog is actually functioning like a combination of my personal blogging notes and the news reports that I find interesting. I’m glad you found useful information here in three different posts because that means keeping this blog is worth it. Thanks for letting me know you came and benefited from what you found.

Follow

Get every new post delivered to your Inbox.

Join 55 other followers