TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Square API Leaves Apps Vulnerable to XSS Attacks

8 pointsby chrisdavarover 9 years ago

2 comments

kylequestover 9 years ago
They can't really do it because they have no idea where the data will be used. Depending on where your app puts the data different types of encoding must be done.
chrisdavarover 9 years ago
Begs the question how can they leave the apps unaudited. 6 months on the store after someone raising this issue seems just lazy or careless on square's part.