Sign in through GitHub

RailsCasts Pro episodes are now free!

Learn more or hide this

Yura Taras's Profile

GitHub User: ytaras

Site: http://twitter.com/sampik

Comments by Yura Taras

Avatar

Do we have XSS vulnerability because of displaying 'raw tags.map'? Hacker could inject some sort of malicious code in a tag name so it would be sent to user without escaping.