Hacker News new | past | comments | ask | show | jobs | submit login

I edited my original post to include a working XSS exploit.



Wow...impressive. Even though this is not so much a weakness o f Goldenlayout as rather the particular image component I use on the startpage. Still though, thanks. Remind me to hire you if I want to get back at someone.


Usually I work to prevent problems rather than create them but hey I could be the antagonist in someone's novel. I doubt that's not the only exploit in the library either. I could go through it with a finer toothed comb if you wanted.


I'd be forever grateful. I imagine this one to be quite tough since it's ultimately up to the user to create and read serializable state objects for their components.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: