Support Forum

Topic: plugin

Browse community answers for this topic or search for a specific issue.

Configurable iframe sandbox permissions in SiteOrigin Video Player

pluginplugin-widgets-bundletechnical · By Prachi Patel · 2 months ago · Reply by Andrew Misplon 2 months ago

I am using the SiteOrigin Video Player widget and noticed that the generated iframe currently uses: sandbox=”allow-scripts allow-same-origin allow-presentation” Some security scanners (such as Acunetix) still report this as an insecure or overly permissive iframe configuration because multiple sandbox permissions…