Page 1 of 1

allow https://verifiedbyvisa.com in XSS

Posted: Sat Jul 10, 2010 5:38 am
by greyfoxsylux
I'm unsure if it affects my online shopping. NoScript tends to filter https://verifiedbyvisa.com (trusted source) from XSS. This is noticed when I do shopping by Newegg (http://newegg.com) and you should whitelist it. Not sure what I can do to whitelist it myself.

Re: allow https://verifiedbyvisa.com in XSS

Posted: Sat Jul 10, 2010 7:49 am
by Giorgio Maone
Could you PM me the [NoScript XSS] lines you should get in Tools|Error Console when this happens?
However, using Options|Unsafe Reload from the XSS warning should do the trick and allow the transaction to complete.

Re: allow https://verifiedbyvisa.com in XSS

Posted: Sat Jul 10, 2010 1:49 pm
by greyfoxsylux
Unfortunately it seems the only closest thing to NS XSS are:

Error: missing ; before statement
Source File: javascript:%20NoScript%20XSS
Line: 1, Column: 1
Source Code:
NoScript XSS

Error: newegg is not defined
Source File: javascript:%20newegg.com
Line: 1

Error: missing ] after element list
Source File: javascript:%20[NoScript%20XSS]
Line: 1, Column: 11
Source Code:
[NoScript XSS]

it might help. But it seems there's a limit to the error console, and I had to sleep and when i came back it pretty much was overwritten.