New Facebook cross-site scripting vulnerabilities

Published: 2008-12-16
Last Updated: 2008-12-16 02:02:33 UTC
by Toby Kohlenberg (Version: 1)
From XXSed ( -

"Security researchers Zeitjak, David Wharton, Daimon and p3lo, have recently discovered XSS flaws that affect several Facebook functionalities including the developers page, new users registration page, iphone login page and applications page."

PoC links are on XXSed for anyone who is curious.

