mathiasbynens/jsperf.com

XSS vulnerability

Closed this issue · 1 comments

This submitted test, when loaded redirects the user to another website
http://jsperf.com/brazil-vs-colombia-fifa-world-cup-2014-free-live-stream/9

JSPerf doesn't restrict the html you can put in a test. This is great for devs but has unfortunately this has left the door open to spammers. We've taken steps to address this in #179.