1b.app
Link copied -

It gives the error "Error saving. Injection or Xss detected" when saving the product

Congratulations!

An error occurs when I add the Instagram code to the additional product field (field name "Video review") - Injection or Xss detected

The code itself is a link to an Instagram post that I then plan to transfer via Box to Khoroshop for display.

Here is the link to the card https://our-store.com.ua/app/product/32760/edit/?tabid=30

Tell me, what could be the problem?
Original question is available on version: ua

Answers:

The problem is the presence of script in the text.
Do you really need certain Instagram scripts to be there?
вчера, 10:18
Original comment available on version: ua


Maksym Vadimovych Tyndyk
OneBox production wrote:
The problem is the script in the text

Unfortunately, I'm not that knowledgeable about this topic, so I'm writing a request.

Maksym Vadimovich Tyndyk
OneBox production wrote:
Do you really need certain Instagram scripts to be there?

Yes, you need to be able to insert these scripts, because we tried inserting them directly into Khoroshop - everything works fine, but there is a problem with Box.
вчера, 11:47
Original comment available on version: ua


Yurchenko Roman Sergeevich wrote:
but there is a problem with Box

because it is a vulnerability - to give the opportunity to load scripts into data, because scripts can be hacked, etc.
I can offer you an individual configuration to allow inserting scripts into additional fields, but the consequences are at your own risk - such modification will take 1 hour
вчера, 12:24
Original comment available on version: ru

Please join the conversation. If you have something to say - please write a comment. You will need a mobile phone and an SMS code for identification to enter. Log in and comment