Widget:Iframe

From ProWiki - Demo and Test Wiki

Revision as of 15:22, 30 October 2023 by Karsten (talk | contribs) (new)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

This widget allows you to embed any web page on your wiki page using an iframe tag.

Created by Sergey Chernyshev.

While the URL is validated to be a valid URL, there is no way the widget can check the contents of the page that is included. When enabling this widget, you allow any user that can edit to include any page, including malicious pages (containing trojans, backdoors, viruses etc), pages that brake out of the iframe and pages that look like your site, but actually is a copy used for phishing.

Consider making a widget that is specific to the site you wish to iframe instead. You can also consider adding the sandbox and allow attribute to the iframe, which reduces but does not eliminate the risk of tricking users.