Re: XSS mitigation in browsers

On 1/20/11 7:10 PM, sird@rckc.at wrote:
> Here's the PoC:
> http://eaea.sirdarckcat.net/epicwin.xhtml
>
> Though, only works on xhtml :(

Ah, and this doesn't work in Gecko 2.0.  Sanity is restored.  ;)

-Boris

Received on Friday, 21 January 2011 04:09:04 UTC