Hearts are tough, she said, most times hearts don't break, and I'm sure that's right . . . but what about then? What about who we were then? What about hearts in Atlantis?
I dont have that button either.
Whats worrying is that Brian is entering HTML tags in his post which AFAIK shouldn't be allowed as it's specifically switched off. Thats why we have the BBCODE tags so that it limits whats allowed in the markup.
Having HTML switched on opens the site up to some nefarious posts...
While vB provides the capability to allow HTML, one should never use it. It opens your board to attack.
Use bbcodes. If you need to emulate an HTML tag, write a new bbcode.
The problem with allowing the injection of HTML is a complicated one. There is no 100% safe method to allow HTML and feel secure. Some of the issues and interactions are:
1. The obviously dangerous tags like SCRIPT and APPLET are not the only danger. Any injection of a URL can be dangerous. Any tag that allows for a URL (e.g., a, img, frame, ...) can be used for cross-site scripting and cookie stealing, which can allow someone to hack into your board.
2. Hackers can use various tricks that would result in a tag getting through the filter imposed by the PHP checker. Possible examples:
a) <sc\0ript> becomes <script>
b) <scr<embed>ipt> becomes <embed> or <script>
3. Then there is the issue of malicious tag attributes and events such as onclick and onmouseup.
"A real limited edition, far from being an expensive autograph stapled to a novel, is a treasure. And like all treasures do, it transforms the responsible owner into a caretaker, and being a caretaker of something as fragile and easily destroyed as ideas and images is not a bad thing but a good one...and so is the re-evaluation of what books are and what they do that necessarily follows." - Stephen King
Good thing I'm not a hacker. It is worrying that one could gain access though.
I just ran CCleaner to clear out cookies, history, settings, and the registry. It seems that the site is working again.
Did you also do something, Simon? I don't think I could have granted myself HTML privileges.
"One day you're going to figure out that everything they taught you was a lie."
Ok, a quick bit of testing shows HTML is definitely off.
That button is not shown in Chrome but does appear if using Firefox. Basically it switches the editor into WYSIWYG mode, but doesn't allow entering of HTML
"A real limited edition, far from being an expensive autograph stapled to a novel, is a treasure. And like all treasures do, it transforms the responsible owner into a caretaker, and being a caretaker of something as fragile and easily destroyed as ideas and images is not a bad thing but a good one...and so is the re-evaluation of what books are and what they do that necessarily follows." - Stephen King
I'm having zero issues, using Firefox.
I'm sure if there is intelligent life somewhere out there in the universe, they are wise enough to stay away from us.
And the people bowed and prayed, to the cell phone god they made...
No problems with IE.
You don't know my kind.....You don't my mind.....Dark necessities are part of my design.....
Author of The Road to the Dark Tower, Stephen King: A Complete Exploration of His Work, Life, and Influences and The Dark Tower Companion. Co-editor with Stephen King of the anthology Flight or Fright.
Just cleared cookies and Cache and it's still happening... Weird. Maybe I'll just move overt to firefox
Anyone else getting a database error screen when trying to navigate the site?
Hearts are tough, she said, most times hearts don't break, and I'm sure that's right . . . but what about then? What about who we were then? What about hearts in Atlantis?
Sorry about the site outage. Hopefully all is well now.
???
Has there been a bad merge? These last three posts look like they belong somewhere else.
Author of The Road to the Dark Tower, Stephen King: A Complete Exploration of His Work, Life, and Influences and The Dark Tower Companion. Co-editor with Stephen King of the anthology Flight or Fright.
Is this related to the site issue we had yesterday? I have one PM showing unread and had an email notification come in, but inside my PM area I do not see any new message... Weird.
My latest posts have all vanished and it seems no new posts are shown for the last 8 hours. Something's wrong, but I don't know what.
I'm sure if there is intelligent life somewhere out there in the universe, they are wise enough to stay away from us.
And the people bowed and prayed, to the cell phone god they made...
Looks like there might still be an issue. when I try looking at the thread 'Aftermarket Slipcases & Traycases'. I can hit page 46 but when I try to go to the last post I get:
Database Error Database error
The Palaver - A forum for Stephen King fans & Book Collectors database has encountered a problem.
Please try the following:
Load the page again by clicking the Refresh button in your web browser.
Open the www.thedarktower.org home page, then try to open another page.
Click the Back button to try another link.
The www.thedarktower.org forum technical staff have been notified of the error, though you may contact them if the problem persists.
We apologise for any inconvenience.
"A real limited edition, far from being an expensive autograph stapled to a novel, is a treasure. And like all treasures do, it transforms the responsible owner into a caretaker, and being a caretaker of something as fragile and easily destroyed as ideas and images is not a bad thing but a good one...and so is the re-evaluation of what books are and what they do that necessarily follows." - Stephen King
It seems all of my posts from this morning have gone.
"A real limited edition, far from being an expensive autograph stapled to a novel, is a treasure. And like all treasures do, it transforms the responsible owner into a caretaker, and being a caretaker of something as fragile and easily destroyed as ideas and images is not a bad thing but a good one...and so is the re-evaluation of what books are and what they do that necessarily follows." - Stephen King
Simon IDK what you just posted as now that you posted here I can no longer open the last page of this one either. I confirmed it on a few other pages too. I tried other browsers and it's happening in all of them.
We are working on the database error problem.
Working on database error