Skip to content

Comment on XSS vulnerability found in Githubparent

Comments

> What it is is a domain-by-domain whitelister.

Domain whitelisting is useless in situations like this, as sites like Github are likely to be in a frequent visitor's trusted sites list.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.