Simon Willison’s Weblog

Items tagged xss, javascript, css, security

Filters: xss × javascript × css × security ×


MySpace: Too Much of a Good Thing? CSS customization really was just the result of forgetting to strip HTML. They “eventually” decided to filter out JavaScript(!) # 17th January 2007, 9:09 am

Types

Years

Tags