Irom1/terminal

Irom

Vanceagher opened this issue · 1 comments

@Irom1 AnswerThis AI on Irom is vulnerable to XSS.

https://ai.irom.ga/?q=js#answer

This is the only way I could contact you, I thought you should know.

You should use something other than innerHTML to load the answer.

Irom1 commented

Hi @Vanceagher thank you for letting me know! I will try to fix it at some point soon - it is currently in a bit of a mess after some kids on my ski team infuenced the top 10 and answer database with random stuff.

BTW: You can also contact me at irom1@irom.ga and I can get back to you that way.

irom1