Intro – Testing Google Sites and Google Caja In March 2018, I reported an XSS in Google Caja, a tool to securely embed arbitrary html/javascript in a webpage. In May 2018, after the XSS was fixed, I realised that Google Sites was using an unpatched version of Google Caja, so I looked if it was… Read More
| # | Наименование новости | Тональность | Информативность | Дата публикации |
|---|---|---|---|---|
| 1 | DOM XSS in Gmail with a little help from Chrome | 0 | 7.35 | 03-05-2020 |
| 2 | Stored XSS on Facebook | 0 | 8.27 | 18-03-2018 |
| 3 | Advanced Flash Vulnerabilities in Youtube – Part 2 | 0 | 11.14 | 30-08-2017 |
| 4 | Security advisories: Drupal core - Moderately critical - Cross-site scripting - SA-CORE-2026-011 | 0 | 7 | 15-07-2026 |
| 5 | Advanced Flash vulnerabilities in Youtube – Part 4 | 0 | 11.52 | 13-09-2017 |
| 6 | Trivial anti-crawler with Caddy | 0 | 8.42 | 23-06-2026 |
| 7 | Carrot disclosure: Forgejo | 0 | 9.35 | 28-04-2026 |
| 8 | CSS:the bomb inside your inbox | 0 | 7.42 | 06-08-2026 |
| 9 | Security advisories: Drupal core - Moderately critical - Cross-site scripting - SA-CORE-2026-012 | 0 | 5 | 15-07-2026 |
| 10 | Google Bug Hunter Claims $500K From AI-Assisted Vulnerability Pipeline | 0 | 5 | 15-06-2026 |