img tag is vulnerable

Instead of it just being [ img ]imagelink.jpg/png/gif[ /img ]

On forums etc they can put:

[ img ]error.jpg’ onerror=‘parent.location.href=“www.website.com”’[ /img ]

Any help how to sanitise the images so this isn’t possible?

Are you asking about how to do that in a particular forum?

Sponsor our Newsletter | Privacy Policy | Terms of Service