Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I don't see how this is the original authors problem actually, regardless of the cause. Someones incorrectly written code injected into your own runtime environment could cause all sorts of weird problems.

IMO this is a reasonably serious browser security issue along the same lines as CORS, but thats another argument.



Consider applying for YC's Fall 2026 batch! Applications are open till July 27.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: