Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

So we can see this in action with multiple people: http://thingler.com/2bc64a49abc2d42d9bee2beb032c2a59


Woohoo, exploding with XSS bugs.


Hmm, based on the fact that every recent Node.js demo I've seen recently without exception has had pervasive XSS attacks, perhaps the Node.js community should build themselves some safer HTML generation and handling libraries stat, and crown them as "the way to do HTML".

Not that there's anything even remotely unique about Node.js on that front.


It handled Unicode well - ☃


Ahh ... that link brings me to a strange place.Avoid.


Fixed @:)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: