Hacker News new | ask | show | jobs
by zumth 4723 days ago
And for extra effect, you can also include your own blink tag or javascript : http://foaas.herokuapp.com/donut/bob%3Cscript%3EsetTimeout%2...
1 comments

Doesn't this mean you can do any kind of cross-site scripting? Like redirect to goatse.cx?