I'm only wondering about the cross-site-scripting because I'm printing text/plain, so in theory no html is shown/executed, or is there?
In reply to Re^2: CGI script security: putting untainted input into a qr//
by eXile
in thread CGI script security: putting untainted input into a qr//
by eXile
| For: | Use: | ||
| & | & | ||
| < | < | ||
| > | > | ||
| [ | [ | ||
| ] | ] |