Hacker News new | ask | show | jobs
by homakov 4708 days ago
no cookie/XSS or any real vuln here involved. This is completely standard design problem of sandbox domain. Check out http://homakov.github.io/guc.html
1 comments

Oh, btw, also, you may be interested in window.setTimeout.
i am js jedi, but don't spend much time on PoCs.