New to Translating WordPress? Read through our Translator Handbook to get started. Hide
| Prio | Original string | Translation | — |
|---|---|---|---|
| ↑ | Enable SVG uploads and sanitize them to stop XML/SVG vulnerabilities in your WordPress website. | Увімкніть завантаження SVG та очистіть їх, щоб зупинити XML/SVG уразливості на вашому веб-сайті WordPress | Details |
Original current
Enable SVG uploads and sanitize them to stop XML/SVG vulnerabilities in your WordPress website.
You have to log in to edit this translation. |
|||
| ↑ | Safe SVG | Safe SVG | Details |
Original current |
|||
| Please report security bugs found in the source code of the Safe SVG plugin through the <a href="https://patchstack.com/database/vdp/9e5fb4ed-587a-4ada-8dc3-a5b7362c0501">Patchstack Vulnerability Disclosure Program</a>. The Patchstack team will assist you with verification, CVE assignment, and notify the developers of this plugin. | Будь ласка, повідомляйте про помилки безпеки, виявлені у вихідному коді плагіна Safe SVG, через <a href="https://patchstack.com/database/vdp/9e5fb4ed-587a-4ada-8dc3-a5b7362c0501">Програму розкриття вразливостей Patchstack</a>. Команда Patchstack допоможе вам із перевіркою, присвоєнням номера CVE та повідомить про це розробників цього плагіна. | Details | |
Original current
Please report security bugs found in the source code of the Safe SVG plugin through the <a href="https://patchstack.com/database/vdp/9e5fb4ed-587a-4ada-8dc3-a5b7362c0501">Patchstack Vulnerability Disclosure Program</a>. The Patchstack team will assist you with verification, CVE assignment, and notify the developers of this plugin.
CommentFound in faq paragraph. You have to log in to edit this translation. |
|||
| This is a deliberate design decision: Safe SVG prioritizes guaranteed sanitization over broad compatibility. SVGs are only allowed when we can ensure they're safe. | Це свідоме проектне рішення: Safe SVG надає пріоритет гарантованій очистці даних над широкою сумісністю. Файли SVG допускаються лише в тому випадку, якщо ми можемо гарантувати їхню безпеку. | Details | |
Original current
This is a deliberate design decision: Safe SVG prioritizes guaranteed sanitization over broad compatibility. SVGs are only allowed when we can ensure they're safe.
CommentFound in faq paragraph. You have to log in to edit this translation. |
|||
| Globally enabling the <code>image/svg+xml</code> MIME type would allow SVGs through all upload paths—including custom ones Safe SVG cannot intercept and sanitize. This would create security vulnerabilities where unsanitized SVGs containing malicious scripts could be uploaded. | Глобальне увімкнення MIME-типу <code>image/svg+xml</code> дозволило б завантажувати SVG-файли через усі шляхи завантаження — включаючи й ті, що налаштовуються користувачем, які Safe SVG не може перехопити та очистити. Це створило б уразливості безпеки, через які можна було б завантажувати неочищені SVG-файли, що містять шкідливі скрипти. | Details | |
Original current
Globally enabling the <code>image/svg+xml</code> MIME type would allow SVGs through all upload paths—including custom ones Safe SVG cannot intercept and sanitize. This would create security vulnerabilities where unsanitized SVGs containing malicious scripts could be uploaded.
CommentFound in faq paragraph. You have to log in to edit this translation. |
|||
| Safe SVG only allows SVGs through upload paths it can actively sanitize. While most WordPress uploads use standard functions like <code>wp_handle_upload()</code> (which Safe SVG hooks), plugins and themes can create custom upload paths by calling WordPress's underlying <code>_wp_handle_upload()</code> function with arbitrary action parameters. | Safe SVG допускає SVG-файли лише через шляхи завантаження, які він може активно очищати. Хоча більшість завантажень у WordPress використовують стандартні функції, такі як <code>wp_handle_upload()</code> (до якої підключається Safe SVG), плагіни та теми можуть створювати власні шляхи завантаження, викликаючи базову функцію WordPress <code>_wp_handle_upload()</code> із довільними параметрами дії. | Details | |
Original current
Safe SVG only allows SVGs through upload paths it can actively sanitize. While most WordPress uploads use standard functions like <code>wp_handle_upload()</code> (which Safe SVG hooks), plugins and themes can create custom upload paths by calling WordPress's underlying <code>_wp_handle_upload()</code> function with arbitrary action parameters.
CommentFound in faq paragraph. You have to log in to edit this translation. |
|||
| To turn isolation off, at the cost of allowing an SVG's CSS to affect the rest of the page: | Щоб вимкнути ізоляцію, дозволивши при цьому CSS-стилям SVG впливати на решту сторінки: | Details | |
Original current
To turn isolation off, at the cost of allowing an SVG's CSS to affect the rest of the page:
CommentFound in faq paragraph. You have to log in to edit this translation. |
|||
| Inherited properties still cross the boundary, so setting <code>color</code> on an ancestor and using <code>currentColor</code> inside the SVG works, as do CSS custom properties. SVGs that do not contain a <code><style></code> element are rendered without the shadow root and can be styled by theme stylesheets. | Успадковані властивості все ще перетинають межу, тому встановлення <code>color</code> для предка та використання <code>currentColor</code> всередині SVG працює, так само як і власні властивості CSS. SVG-файли, що не містять елемента <code><style></code>, візуалізуються без «кореня тіні» і можуть оформлюватися за допомогою таблиць стилів теми. | Details | |
Original current
Inherited properties still cross the boundary, so setting <code>color</code> on an ancestor and using <code>currentColor</code> inside the SVG works, as do CSS custom properties. SVGs that do not contain a <code><style></code> element are rendered without the shadow root and can be styled by theme stylesheets.
CommentFound in faq paragraph. You have to log in to edit this translation. |
|||
| Mostly, yes. The Inline SVG block renders an SVG that carries its own <code><style></code> element inside a shadow root, because CSS inside an inline SVG is otherwise applied to the whole page rather than just the SVG. Stylesheets cannot reach into a shadow root, so theme CSS such as <code>.entry-content svg { fill: red; }</code> will not apply to those SVGs. | В основному, так. Блок Inline SVG відображає SVG, який містить власний елемент <code><style></code> всередині тіньового кореня, оскільки в іншому випадку CSS всередині вбудованого SVG застосовується до всієї сторінки, а не лише до самого SVG. Таблиці стилів не можуть проникати в тіньовий корінь, тому CSS теми, такий як <code>.entry-content svg { fill: red; }</code>, не застосовуватиметься до цих SVG-файлів. | Details | |
Original current
Mostly, yes. The Inline SVG block renders an SVG that carries its own <code><style></code> element inside a shadow root, because CSS inside an inline SVG is otherwise applied to the whole page rather than just the SVG. Stylesheets cannot reach into a shadow root, so theme CSS such as <code>.entry-content svg { fill: red; }</code> will not apply to those SVGs.
CommentFound in faq paragraph. You have to log in to edit this translation. |
|||
| Where do I report security bugs found in this plugin? | Куди мені повідомляти про виявлені помилки безпеки у цьому плагіні? | Details | |
Original current
Where do I report security bugs found in this plugin?
CommentFound in faq header. You have to log in to edit this translation. |
|||
| Why doesn't Safe SVG globally enable SVG uploads? | Чому Safe SVG не вмикає завантаження SVG для всіх користувачів? | Details | |
Original current
Why doesn't Safe SVG globally enable SVG uploads?
CommentFound in faq header. You have to log in to edit this translation. |
|||
| Can my theme style an inline SVG? | Чи може моя тема застосовувати стилі до вбудованого SVG-файлу? | Details | |
Original current
Can my theme style an inline SVG?
CommentFound in faq header. You have to log in to edit this translation. |
|||
| WordPress’s <code>_wp_handle_upload( $file, $action )</code> function allows any <code>$action</code> value, which determines the filter hook name: <code>{$action}_prefilter</code>. Safe SVG hooks common actions like <code>wp_handle_upload</code> and <code>wp_handle_sideload</code>, but cannot hook arbitrary custom actions defined by third-party code. Since upload actions are unbounded and MIME allowances are global, we cannot guarantee sanitization coverage across all possible upload paths. | Функція WordPress <code>_wp_handle_upload( $file, $action )</code> допускає будь-яке значення <code>$action</code>, яке визначає ім’я фільтруючого хука: <code>{$action}_prefilter</code>. Safe SVG підключається до типових дій, таких як <code>wp_handle_upload</code> та <code>wp_handle_sideload</code>, але не може підключатися до довільних користувацьких дій, визначених стороннім кодом. Оскільки дії завантаження є необмеженими, а дозволені типи MIME є глобальними, ми не можемо гарантувати повне очищення даних у всіх можливих шляхах завантаження. | Details | |
Original current
WordPress’s <code>_wp_handle_upload( $file, $action )</code> function allows any <code>$action</code> value, which determines the filter hook name: <code>{$action}_prefilter</code>. Safe SVG hooks common actions like <code>wp_handle_upload</code> and <code>wp_handle_sideload</code>, but cannot hook arbitrary custom actions defined by third-party code. Since upload actions are unbounded and MIME allowances are global, we cannot guarantee sanitization coverage across all possible upload paths.
CommentFound in description paragraph. You have to log in to edit this translation. |
|||
| Technical: Upload Path Security | Технічні аспекти: Безпека шляху завантаження | Details | |
Original current
Technical: Upload Path Security
CommentFound in description header. You have to log in to edit this translation. |
|||
| SVG Optimization is done through the following library: <a href="https://github.com/svg/svgo">https://github.com/svg/svgo</a>. | Оптимізація SVG здійснюється за допомогою наступної бібліотеки: <a href="https://github.com/svg/svgo">https://github.com/svg/svgo</a>. | Details | |
Original current
SVG Optimization is done through the following library: <a href="https://github.com/svg/svgo">https://github.com/svg/svgo</a>.
CommentFound in description paragraph. You have to log in to edit this translation. |
|||
Export as
Comment
Short description.