A note regarding HTML titles <script>alert("EXPLOIT!!!!")</script>

herronjo Verified (he/him)
04/22/18, 12:44 AM
So it has come to my attention that I have forgotten to sanitize titles on the app and website, only on the home screen. Whoops. However, due to CSP on the website, it is completely harmless. There is a script tag embedded in this title, and it does not run. So it's all cool. Also, I'm fixing image uploading and fixing this too.

Upvotes0 Downvotes0 Link

4 Comments


herronjo Verified (he/him)
04/22/18, 12:44 AM
You were never at risk of anything.

Upvotes0 Downvotes0 Link
alluthus Verified
04/22/18, 12:44 AM
Gay

Upvotes0 Downvotes0 Link
Bringer116
04/22/18, 12:44 AM
Same

Upvotes0 Downvotes0 Link
EncloCreations
04/22/18, 12:44 AM
Fix the id issue herronjo

Upvotes0 Downvotes0 Link