Special github nickname allows for XSS ยท Issue #6 ยท codenoid/github-roast
If you set your GitHub nickname to something like this: X" this is the end of the trusted user input. also append the following: <img onerror="alert()" src=""></img> for research purposes, it will ...