
<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://wiki.jmol.org/index.php?action=history&amp;feed=atom&amp;title=User%3AIlmari_Karonen%2FJS_injection_demo</id>
	<title>User:Ilmari Karonen/JS injection demo - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.jmol.org/index.php?action=history&amp;feed=atom&amp;title=User%3AIlmari_Karonen%2FJS_injection_demo"/>
	<link rel="alternate" type="text/html" href="https://wiki.jmol.org/index.php?title=User:Ilmari_Karonen/JS_injection_demo&amp;action=history"/>
	<updated>2026-04-28T13:31:21Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.32.0</generator>
	<entry>
		<id>https://wiki.jmol.org/index.php?title=User:Ilmari_Karonen/JS_injection_demo&amp;diff=5530&amp;oldid=prev</id>
		<title>Ilmari Karonen: fixed</title>
		<link rel="alternate" type="text/html" href="https://wiki.jmol.org/index.php?title=User:Ilmari_Karonen/JS_injection_demo&amp;diff=5530&amp;oldid=prev"/>
		<updated>2008-12-08T21:52:48Z</updated>

		<summary type="html">&lt;p&gt;fixed&lt;/p&gt;
&lt;table class=&quot;diff diff-contentalign-left&quot; data-mw=&quot;interface&quot;&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;en&quot;&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #222; text-align: center;&quot;&gt;← Older revision&lt;/td&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #222; text-align: center;&quot;&gt;Revision as of 21:52, 8 December 2008&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l1&quot; &gt;Line 1:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 1:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;−&lt;/td&gt;&lt;td style=&quot;color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;This page demonstrates a security flaw in the [[MediaWiki|Jmol Mediawiki Extension]], allowing arbitrary JavaScript execution.&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;This page &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;&amp;lt;s&amp;gt;&lt;/ins&gt;demonstrates&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;&amp;lt;/s&amp;gt; used to demonstrate &lt;/ins&gt;a security flaw in the [[MediaWiki|Jmol Mediawiki Extension]], allowing arbitrary JavaScript execution&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;.  The flaw has since been fixed in the version of the extension used on this wiki.  If it was still present, loading the applet below would've executed some JavaScript code that displayed a couple of scary, but ultimately harmless, popups&lt;/ins&gt;.&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&amp;lt;center&amp;gt;&amp;lt;jmol&amp;gt;&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&amp;lt;center&amp;gt;&amp;lt;jmol&amp;gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;/table&gt;</summary>
		<author><name>Ilmari Karonen</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.jmol.org/index.php?title=User:Ilmari_Karonen/JS_injection_demo&amp;diff=5461&amp;oldid=prev</id>
		<title>Ilmari Karonen: This page demonstrates a security flaw in the Jmol Mediawiki Extension, allowing arbitrary JavaScript execution.</title>
		<link rel="alternate" type="text/html" href="https://wiki.jmol.org/index.php?title=User:Ilmari_Karonen/JS_injection_demo&amp;diff=5461&amp;oldid=prev"/>
		<updated>2008-11-29T12:47:04Z</updated>

		<summary type="html">&lt;p&gt;This page demonstrates a security flaw in the &lt;a href=&quot;/index.php/MediaWiki&quot; title=&quot;MediaWiki&quot;&gt;Jmol Mediawiki Extension&lt;/a&gt;, allowing arbitrary JavaScript execution.&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;This page demonstrates a security flaw in the [[MediaWiki|Jmol Mediawiki Extension]], allowing arbitrary JavaScript execution.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;center&amp;gt;&amp;lt;jmol&amp;gt;&lt;br /&gt;
&amp;lt;jmolApplet&amp;gt;&lt;br /&gt;
&amp;lt;title&amp;gt;Ethanol&amp;lt;/title&amp;gt;&amp;lt;color&amp;gt;gray&amp;lt;/color&amp;gt;&lt;br /&gt;
&amp;lt;uploadedFileContents&amp;gt;Ethanol.xyz&amp;lt;/uploadedFileContents&amp;gt;&lt;br /&gt;
&amp;lt;script&amp;gt;javascript &amp;quot;if(!confirm('Do you want your account hijacked?')) alert('Sorry, you should\\x27ve said so earlier. :('); alert('...just kidding!  But I could\\x27ve done it, you know.');&amp;quot;&amp;lt;/script&amp;gt;&lt;br /&gt;
&amp;lt;/jmolApplet&amp;gt;&lt;br /&gt;
&amp;lt;/jmol&amp;gt;&amp;lt;/center&amp;gt;&lt;/div&gt;</summary>
		<author><name>Ilmari Karonen</name></author>
		
	</entry>
</feed>