pull down to refresh

I replied to your report on Github.
I am still interested in the XSS vulnerability you said you found.
  1. Same https://github.com/stackernews/stacker.news/issues/2144#issuecomment-2845280638
  2. i was wrong - i thought the credits settings form was exploitable
reply