XSS message on qoppa.net -> payflowlink.paypal.com
Posted: Tue Sep 06, 2011 12:58 am
NoScript recently gave me an XSS warning when I tried to make a purchase. The log read:
I'm guessing it's a false positive, but have no way of knowing on my own. I emailed qoppa.net about it & they're looking into it. This question seems to be about the same basic problem, but it didn't get answered.
Any advice?
I'm using Firefox 6.0.1 with NoScript 2.1.2.6 on Xubuntu 11.04. I don't have scripts allowed on qoppa.net (not sure if I temporarily allowed them the first time but I don't think so) & I do on paypal (& apparently payflowlink.paypal).[NoScript XSS] Sanitized suspicious upload to [https://payflowlink.paypal.com/] from [http://www.qoppa.com/pdfstudio/buy/index.html]: transformed into a download-only GET request.
I'm guessing it's a false positive, but have no way of knowing on my own. I emailed qoppa.net about it & they're looking into it. This question seems to be about the same basic problem, but it didn't get answered.
Any advice?