Is kbin vulnerable to the same kind of Javascript insertion attack as Lemmy was recently?

#kbinMeta

  • Chozo@kbin.social
    link
    fedilink
    arrow-up
    3
    ·
    1 year ago

    @ZILtoid1991 I don’t believe so. The exploit involved stealing cookies via the renderer used for custom emojis, which not every Lemmy instance has. I don’t believe Kbin has any such features in place, so while it’s possible for the exploit to still somehow happen here, it wouldn’t be in the exact same way, at the very least.