impress/app
Matchu 5601511ad5 xss vulnerability in outfits#show
This one was actually pretty darn clever - nobody's abused it, but
I was reading a blog post where someone described this type of
issue, I realized it was a brilliant attack, and then realized
DTI was vulnerable. Oops. Thanks for the solution, Jamie!

http://jamie-wong.com/2012/08/22/what-i-did-at-khan-academy/#XSS+Fix
2012-10-20 17:56:38 -05:00
..
controllers cache homepage latest contribution 2012-08-09 22:59:35 -04:00
helpers xss vulnerability in outfits#show 2012-10-20 17:56:38 -05:00
models a more forgiving "type" search filter 2012-10-08 21:20:18 -05:00
stylesheets modeling hub 2012-08-06 21:15:31 -04:00
views xss vulnerability in outfits#show 2012-10-20 17:56:38 -05:00