This site is an archive; learn more about 8 years of OpenHatch.

[OH-Dev] Cross-site scripting attack

Asheesh Laroia asheesh at asheesh.org
Sun Jan 5 09:20:35 UTC 2014


There's a person on Facebook who says our site is vulnerable to a 
cross-site scripting attack. Anyone curious about finding out more, and 
seeing if you can reproduce the issue, and then submitting a patch for it?

It is probably a fairly simple mis-use of templates, so this doesn't 
require a security background.

-- Asheesh.


More information about the Devel mailing list