Page 1 of 1

False positive XSS on www.baidu.com

Posted: Fri Jan 03, 2014 11:53 am
by 江3如此多娇
[19:51:15.137] [NoScript XSS] Sanitized suspicious request. Original URL [http://www.baidu.com/s?wd=%C1%E2%BD%C7] requested from [chrome://browser/content/browser.xul]. Sanitized URL: [http://www.baidu.com/#6325863177406117981].
--
[19:51:55.898] [NoScript XSS] Sanitized suspicious request. Original URL [http://www.baidu.com/s?wd=%B3%C2%C1%BC%D3%EE] requested from [chrome://browser/content/browser.xul]. Sanitized URL: [http://www.baidu.com/#0366233891619282271].

========================================================
baidu is the most popular search engine in China, maybe Giorgio Maone could consider adding it the default XSS exception :D