Ask Your Question
3

injection <script>alert("xss");</script>

asked 2012-01-10 14:39:42 -0500

piskvorky gravatar image

updated 2012-01-10 22:11:35 -0500

Evgeny gravatar image

just testing script injection :-)

<script>alert("xss");</script>
edit retag flag offensive close merge delete

Comments

Viewing this page gives me a browser alert. I guess that's not desirable, so I'm adding a "bug" tag.

piskvorky gravatar imagepiskvorky ( 2012-01-10 15:05:08 -0500 )edit

Highly undesirable, will fix asap.

Evgeny gravatar imageEvgeny ( 2012-01-10 16:50:18 -0500 )edit

1 Answer

Sort by ยป oldest newest most voted
1

answered 2012-01-10 22:12:07 -0500

Evgeny gravatar image

Fixed in 0.7.38. Keep trying :) thanks!

edit flag offensive delete link more

Comments

@Evgeny: still happens when viewing a profile page: http://askbot.org/en/users/459/piskvorky/

piskvorky gravatar imagepiskvorky ( 2012-01-14 08:02:09 -0500 )edit

Fixed this too, now need to update the repo trunk.

Evgeny gravatar imageEvgeny ( 2012-01-15 14:46:24 -0500 )edit

Your Answer

Please start posting anonymously - your entry will be published after you log in or create a new account.

Add Answer

Question Tools

Stats

Asked: 2012-01-10 14:39:42 -0500

Seen: 278 times

Last updated: Jan 10 '12