Page 1 of 1

comments module and xss bug

Posted: Tue Jul 17, 2007 3:04 pm
by crumb
I keep getting comments on my site from people that type some strange script with "xss bug" in it somewhere. Here is the latest example:
<__script__ type="text/javascript">alert('XSS BUG ditemukan Coy...')</__script>

What are they trying to do or what does this do? It really doesn't seem to do anything but irritate me.

Re: comments module and xss bug

Posted: Thu Aug 02, 2007 6:02 pm
by Elijah Lofgren
Hi crumb,

I get the same things. I think it must be somehow a warning for an old XSS bug that was in fixed by Comments 1.8.0: http://forum.cmsmadesimple.org/index.ph ... 45861.html

It is quite annoying. I wonder who is taking the time to fill in the captchas, or are robots able to fill in capchas now?

Sorry for the late reply,

Elijah