[wp-forums] Faulty XSS check?

Sergey Biryukov sergeybiryukov.ru at gmail.com
Thu Jan 6 08:54:39 UTC 2011


Found a user with a strange display name: tomontoast" onclick="alert('xss')

http://wordpress.org/support/profile/tomontoast
http://buddypress.org/community/members/tomontoast/


More information about the wp-forums mailing list