<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Twitter misidentifying context</title>
	<atom:link href="http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/</link>
	<description>Javascript blog with messed up syntax inside</description>
	<lastBuildDate>Thu, 26 Jan 2012 01:38:34 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
	<item>
		<title>By: brain[pillow]</title>
		<link>http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/#comment-1683</link>
		<dc:creator>brain[pillow]</dc:creator>
		<pubDate>Thu, 14 Jan 2010 04:50:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=552#comment-1683</guid>
		<description>A little bit another vector:

http://search.twitter.com/search?q=%26%2339%3B)%3Balert(%26%2339%3Bxek%26%2339%3B)%3B%2F%2F</description>
		<content:encoded><![CDATA[<p>A little bit another vector:</p>
<p><a href="http://search.twitter.com/search?q=%26%2339%3B)%3Balert(%26%2339%3Bxek%26%2339%3B" rel="nofollow">http://search.twitter.com/search?q=%26%2339%3B)%3Balert(%26%2339%3Bxek%26%2339%3B</a>)%3B%2F%2F</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gareth Heyes</title>
		<link>http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/#comment-1645</link>
		<dc:creator>Gareth Heyes</dc:creator>
		<pubDate>Wed, 25 Nov 2009 14:06:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=552#comment-1645</guid>
		<description>@Mathias

Yeah it executes alert(1) a couple of times, you&#039;re probably using IE and so it won&#039;t work as I use &apos; but if you use Firefox it will work when you click the &quot;Tweet these results&quot; it could work on other browsers using the alternative entities I mentioned in the post</description>
		<content:encoded><![CDATA[<p>@Mathias</p>
<p>Yeah it executes alert(1) a couple of times, you&#8217;re probably using IE and so it won&#8217;t work as I use &amp;apos; but if you use Firefox it will work when you click the &#8220;Tweet these results&#8221; it could work on other browsers using the alternative entities I mentioned in the post</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mathias Bynens</title>
		<link>http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/#comment-1644</link>
		<dc:creator>Mathias Bynens</dc:creator>
		<pubDate>Wed, 25 Nov 2009 13:11:24 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=552#comment-1644</guid>
		<description>Great post.

Is the â€œTwitter poc (donâ€™t tweet these results)â€ link supposed to alert something? Cause itâ€™s not doing anything special over here. Perhaps WordPress ate parts of the URL or something?</description>
		<content:encoded><![CDATA[<p>Great post.</p>
<p>Is the â€œTwitter poc (donâ€™t tweet these results)â€ link supposed to alert something? Cause itâ€™s not doing anything special over here. Perhaps WordPress ate parts of the URL or something?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gareth Heyes</title>
		<link>http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/#comment-1643</link>
		<dc:creator>Gareth Heyes</dc:creator>
		<pubDate>Wed, 25 Nov 2009 12:34:29 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=552#comment-1643</guid>
		<description>@James

Yep exactly</description>
		<content:encoded><![CDATA[<p>@James</p>
<p>Yep exactly</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: James</title>
		<link>http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/#comment-1642</link>
		<dc:creator>James</dc:creator>
		<pubDate>Wed, 25 Nov 2009 12:29:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=552#comment-1642</guid>
		<description>Another reason not to use inline event handlers.</description>
		<content:encoded><![CDATA[<p>Another reason not to use inline event handlers.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: c</title>
		<link>http://www.thespanner.co.uk/2009/11/23/twitter-misidentifying-context/#comment-1638</link>
		<dc:creator>c</dc:creator>
		<pubDate>Mon, 23 Nov 2009 16:10:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=552#comment-1638</guid>
		<description>Two good posts today.  I&#039;ve got about a day of security reviews for our web apps now.  More interesting than whatever the fuck I would have been doing, though.</description>
		<content:encoded><![CDATA[<p>Two good posts today.  I&#8217;ve got about a day of security reviews for our web apps now.  More interesting than whatever the fuck I would have been doing, though.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

