[wp-trac] [WordPress Trac] #60182: Add Gumlet.com to oEmbed allowlist
WordPress Trac
noreply at wordpress.org
Wed Feb 14 11:45:32 UTC 2024
#60182: Add Gumlet.com to oEmbed allowlist
-------------------------+-----------------------------
Reporter: akbansa | Owner: akbansa
Type: enhancement | Status: assigned
Priority: normal | Milestone: Future Release
Component: Embeds | Version:
Severity: normal | Resolution:
Keywords: has-patch | Focuses:
-------------------------+-----------------------------
Comment (by akbansa):
@swissspidy, I am seeing some issues with just oEmbed and not whitelisted.
{{{
<iframe class=\"wp-embedded-content\" sandbox=\"allow-scripts\"
security=\"restricted\" title=\"Red Porsche looks great\" width=\"600\"
height=\"450\"
src=\"https:\/\/play.gumlet.io\/embed\/65a79ba4df193d90ae313644#?secret=DRecza9W78\"
data-secret=\"DRecza9W78\" frameBorder=\"0\"><\/iframe>
}}}
It adds some secret to the code and removes `allow` attribute. The `allow`
contain `allow=\"accelerometer; autoplay; clipboard-write; encrypted-
media; gyroscope; picture-in-picture; fullscreen\"` that stops us from
standard browser functions.
--
Ticket URL: <https://core.trac.wordpress.org/ticket/60182#comment:19>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform
More information about the wp-trac
mailing list