Hacker News new | ask | show | jobs
by oinopion 5972 days ago
XSS open. http://github.com/ninjagod/patchbin/issues#issue/1
1 comments

I disabled escaping because it had trouble rendering XML code. I thought it was safe but I was wrong.

Fixing now. Thanks! [edit] fixed