Eric Grange your website https://beginend.net is vulnerable to XSS attacks. You need to escape the strings that you pull from 3rd parties. I tried contacting in private but I gave up trying to find some way to contact him so I'm posting this here.


Eric Grange your website https://beginend.net is vulnerable to XSS attacks. You need to escape the strings that you pull from 3rd parties. I tried contacting in private but I gave up trying to find some way to contact him so I'm posting this here.

Comments

  1. cool, so i can put a Doom JS version in my Blogpost and it endsup in the Feed? :D

    ReplyDelete

Post a Comment