Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

@ 功能如何使用以及如何禁用<script>标签? #6

Open
MiYogurt opened this issue Aug 20, 2015 · 0 comments
Open

@ 功能如何使用以及如何禁用<script>标签? #6

MiYogurt opened this issue Aug 20, 2015 · 0 comments

Comments

@MiYogurt
Copy link

我看源码里面好像有一段@功能的源码,但是注释掉了,是没有开发好么?还是怎么,该如何使用这个功能。

最近在写一个类似于phphub的论坛,需要用到这个功能,所以特来问一下。

还有就是我看你博客里面,输入<script>alert(1)</script>不会弹出提示框,是如何防止这种的情况的?

我是直接存Markdown语法格式到数据库,在blade模板上使用EndaEditor::MarkDecode方法的。是否要再控制器里面使用?还是先转换再存入数据库,这样的话,假如要修改,岂不是不能用Markdown了?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant