IV. Flash based XSSes on Youtube iframe api I’m happy that people found my previous posts on Youtube Flash vulnerabilities interesting, and I will keep posting new write-ups. This time I will disclose 3 Flash based XSSes on the new Youtube html5 api (with Flash fallback). Youtube html5 api is called Youtube iframe api, because… Read More
| # | Наименование новости | Тональность | Информативность | Дата публикации |
|---|---|---|---|---|
| 1 | Advanced Flash Vulnerabilities in Youtube – Part 2 | 0 | 11.14 | 30-08-2017 |
| 2 | Advanced Flash Vulnerabilities in Youtube – Part 1 | 0 | 14.51 | 25-08-2017 |
| 3 | Advanced Flash Vulnerabilities in Youtube – Part 3 | 0 | 15.38 | 30-08-2017 |
| 4 | FlashME! – WordPress vulnerability disclosure [CVE-2016-9263] | 0 | 9.77 | 19-10-2017 |
| 5 | Stored XSS on Facebook | 0 | 8.27 | 18-03-2018 |
| 6 | [CVE-2016-9263] XSF vulnerability in WordPress [UPDATED] | 0 | 9.98 | 12-10-2017 |
| 7 | DOM XSS in Gmail with a little help from Chrome | 0 | 7.35 | 03-05-2020 |
| 8 | Into the Borg – SSRF inside Google production network | 0 | 11.2 | 20-07-2018 |
| 9 | Security advisories: Drupal core - Moderately critical - Cross-site scripting - SA-CORE-2026-011 | 0 | 7 | 15-07-2026 |
| 10 | Inline Style Exfiltration: leaking data with chained CSS conditionals | 5 | 8 | 26-08-2025 |