@-posting

Link to posts in the same 4chan thread with "@".

< Отзив за @-posting

Въпрос/коментар

§
Публикуван на: 17.03.2017

Script injection vulnerability

The script as is takes the text value of a node and assigns it to the HTML of its replacement. So if the text contains something like <img onerror=alert(0) src=x> that gets converted to HTML.

Публикувайте отговор

Влезте, за да публикувате отговор.