We launched new forums in March 2019—join us there. In a hurry for help with your website? Get Help Now!

  • Enable @Bindings commands. Describe any command in the entry field (template variable) on the contribution screen and carry out this function. When manage a site in plural members because the practice of the PHP sentence is possible, attention is necessary for the use of this function.
    Say what huh
      Studying MODX in the desert - http://sottwell.com
      Tips and Tricks from the MODX Forums and Slack Channels - http://modxcookbook.com
      Join the Slack Community - http://modx.org
    • OK, I write a procedure. this

      1. Make a TV name as "test"
      2. Put a string as "[*test*]" into any resource
      3. Input value in test tv field, value is "@EVAL return phpinfo();"
      4. Show this resource page
      5. Change this setting "disable"
      6. Test again show this resource page
      7. Output string "@Bindings is disabled."
      • I want more better english translation
        • Ok; I figured out that this disables @Bindings. Question is, why would we want to disable them?

          Ok, I think I got it parsed. Something like
          Prevents the execution of PHP functions through TV @Bindings. Useful if you have Manager users who should not be able to create PHP code but need to be able to create or edit TVs. The output of any TV with an @Binding will be "@Bindings disabled".

          [ed. note: sottwell last edited this post 11 years, 1 month ago.]
            Studying MODX in the desert - http://sottwell.com
            Tips and Tricks from the MODX Forums and Slack Channels - http://modxcookbook.com
            Join the Slack Community - http://modx.org
          • (as an aside, one doesn't say "more better"; with "better" the "more" is already included. Good, better, best. Big, bigger, biggest. Fast, faster, fastest. Usually only works with one-syllable and some two-syllable words. Expensive, more expensive, most expensive. Yes, English is a very odd language. Comes from being based on several language bases, a lot of German and French mixed in.)
              Studying MODX in the desert - http://sottwell.com
              Tips and Tricks from the MODX Forums and Slack Channels - http://modxcookbook.com
              Join the Slack Community - http://modx.org
            • http://tracker.modx.com/issues/9673
              Thanks. I make ticket.
              I want you to teach it if there is incomprehensible translation elsewhere.
              If it is any user with basic document post permissions, @Bindings can be easily get to top level permissions by himself.
              When an untrustworthy user participates, I think this is dangerous.
              This is not vulnerability, but wants to on/off this function.