This site is an archive; learn more about 8 years of OpenHatch.

[OH-Dev] Cross-site scripting attack

Britta Gustafson brittag at gmail.com
Sun Jan 5 22:00:13 UTC 2014


The person also sent an email, so I responded to the email asking for
instructions for reproducing it.

Britta


On Sun, Jan 5, 2014 at 1:20 AM, Asheesh Laroia <asheesh at asheesh.org> wrote:

> There's a person on Facebook who says our site is vulnerable to a
> cross-site scripting attack. Anyone curious about finding out more, and
> seeing if you can reproduce the issue, and then submitting a patch for it?
>
> It is probably a fairly simple mis-use of templates, so this doesn't
> require a security background.
>
> -- Asheesh.
> _______________________________________________
> Devel mailing list
> Devel at lists.openhatch.org
> http://lists.openhatch.org/mailman/listinfo/devel
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openhatch.org/pipermail/devel/attachments/20140105/3abe9c97/attachment.html>


More information about the Devel mailing list