back to article Skype: XSS vuln fix is on the way

Skype has promised to fix a cross-site scripting flaw that exposes Windows users of VoIP technology to potential attack. The flaw was discovered by independent security researcher Levent Kayan, who warned that a hacker might be able to enter a string of JavaScript code into the "mobile phone" field. This would enable a hacker …


  1. Steen Hive

    Good Grief

    Did I pick this up right? Why in Jesus Hairy Christ's name is a textfield on a CLIENT app even capable of taking JavaScript input?

