Sign in through GitHub

Please read for an updated status on RailsCasts:

Learn more or hide this

Yura Taras's Profile

GitHub User: ytaras

Site: http://twitter.com/sampik

Comments by Yura Taras

Avatar

Do we have XSS vulnerability because of displaying 'raw tags.map'? Hacker could inject some sort of malicious code in a tag name so it would be sent to user without escaping.