What I thought was worth discussing a bit further though was 2 other XSS fixes (albiet simple) that the same blogger found and mentioned at the bottom of the post. There were 2 github checkins worth looking at
1.) forms.js fix
2.) mobile-search-results.html fix
It's just good sometimes to see how simple it is to fix XSS and thus you should take time and make time to remediate quickly if you find one.
u>More about neonprimetime
Top Blogs of all-time
Top Github Contributions
Copyright © 2016, this post cannot be reproduced or retransmitted in any form without reference to the original post.