Firefox now blocks iframes that don't match the parent frame's http/https protocol. This breaks many existing embedded videos
Bug #1211583 reported by
Kristina Hoeppner
This bug report is a duplicate of:
Bug #1207140: The embedded iframe filter doesn't support scheme-relative URLs such as "//youtube.com" (now used in the YouTube and Vimeo embed code).
Edit
Remove
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Mahara |
Fix Released
|
High
|
Unassigned |
Bug Description
Firefox 23 has a new "mixed content blocked" security feature (see https:/
It prohibits https sites to see (some) http content. For example, YouTube videos or SlideShare content on a http://
summary: |
- Mixed content blocked + Firefox now blocks iframes that don't match the parent frame's + http/https protocol. This breaks many existing embedded videos |
To post a comment you must log in.
We do not use protocols for the allowed iframe sources when entering new sites. So maybe there we don't have the problem. Maybe the problem is only with the hard-coded / built-in filters.