back to article Yahoo! Mail! vuln! fixed!

Yahoo! has fixed a vulnerability that left users of its popular webmail service at risk of having their login credentials stolen. The cross-site scripting flaw, which allowed session IDs to be be stolen, involves the interaction between Yahoo! mail and the Yahoo! Messenger instant messaging client. The flaw was discovered in …


  1. Steven Swenson

    Why use web-based chat?

    It's a good thing I never do. If possible, I install a client.

  2. tony trolle


    check help , current version now looks like but shows copyright 1997-2006 yahoo! UK

