Six security vulnerabilities from a year of HackerOne

by nestlequ1kon 7/18/2017, 3:46 PMwith 2 comments

by dmndon 7/18/2017, 4:26 PM

Fun fact: dangerouslySetInnerHtml was almost going to be called insertXssVulnerabilityHere.

I wonder if vulnerability #2 from the post would still have happened if the name was that blatant.

by khanaon 7/18/2017, 4:27 PM

That one about _blank hrefs - Good one! Thank you.