Critical Twitter Bug Discovered

A blogger trying to bypass Twitter's new nofollow policy for oauth client application links stumbled upon a massive persistent cross-site scripting (XSS) vulnerability, which allowed him to insert potentially malicious JavaScript code into a tweet. The vulnerability could have been lever... [ read more >> ]

Twitter plagued by yet another serious cross-site scripting vulnerability

Twitter client application configuration form accepting malformed input

Twitter client application link with rel="external" parameter

Image comment: Twitter client application link with rel="external" parameter
Image credits: David Naylor

<< Previous

Twitter client application link with rel="external" parameter