User talk:Ilmari Karonen/JS injection demo
Revision as of 19:26, 29 November 2008 by AngelHerraez (talk | contribs) (discuss the risk involved)
Right, Jmol can invoke javascript commands, so the MediaWiki extension channels those commands.
But most pages do run javascript. What is the risk in letting the extension do so? Maybe the wikis are not allowed to run javascript under normal conditions? --AngelHerraez 20:26, 29 November 2008 (CET)