Login Register
BREAKING: Congressional Hearing In Epstein Case Tells America To Brace For Massive Fallout After Congress Interviews Victims / Reviews Documents!!! --- --- BREAKING: Hot Mic Catches Putin, Xi Discussing Harvesting Organs To “Achieve Immortality!” --- --- ‘Kick Him Out of the Country’: Elon Musk Urges Removal of Boston Imam Who Declared ‘Without Islam, America Will Meet Its Demise’ --- --- Covid Restrictions Make Comeback In Calif, As Officials Urge, ‘Mask Up!’ --- --- Billionaire Airbnb Co-Founder Reveals Why He Abandoned Democrat Party For Trump --- --- Epstein Victims Hold Press Conference, Say They’ll Name Clients & Abusers As POTUS Slams Event As “Democrat Hoax” --- --- Trump Says Tariffs Could Replace Federal Income Tax --- --- Victoria’s Secret Features Trans Model in ‘Fashion Show 2025’ Announcement --- --- Wednesday War Room LIVE: Republicans Demand Release of Epstein Docs, Hold Press Conference with Victims, BUT — Victims Say Trump NEVER DID ‘ANYTHING INAPPROPRIATE!’ MUST-WATCH/SHARE TRANSMISSION! --- --- Trump Admin Calls Congressional Support For Rep. Massie’s Petition To Release Epstein Files A ‘Hostile Act’ --- ---



[Reply]
Forum Index > Helpline
Addressing the poor forum backend
Posted on: 04-22 10:10 am
ohhihohello57

Hey, iWarg.

So I was posting a thread containing some very benign JavaScript in a to see if your forum really is XSS paradise. But after posting, I got hit with a MySQL error, which I found odd.

I decided to check on the forums if it exists anyway, and it does. But the replies counter is glitched, and when I access the thread, no post pane is shown. Not even the JavaScript I embedded works.

I URGE you to fix this and make it so that any HTML tags are escaped (not removed, because I see that the bold tags I added to the word "URGE" are now gone, but escaped as human-readable text instead of markup), as people might make more glitchy threads or get away with XSSing and screw the forum.

~ ohhihohello57

if (Nerd->Personality == (NERD_PERSON_FRONTFACING + NERD_PERSON_SMARTALEC)) { return; }
< - 1 - >

[Reply]