Hacker News new | ask | show | jobs
by tipiirai 4824 days ago
The client obviously strips out any SCRIPT/HTML tags from the input but I guess your're talking about something more clever here. Can you provide an example attack that could potentially pass our security?