codelikecraze — 6/20/2022, 3:45:17 PM

@micahlt oh wow this is unbelievable who could have forseen this

♥ 0 ↩ 0 💬 4 comments

comments

micahlt:

…foreseen what?

6/20/2022, 5:56:24 PM
codelikecraze:

I exposed the app object.

6/20/2022, 5:57:40 PM
micahlt:

Oh sorry, the image wasn't loading. Okay, so did you do it in a way that could be done via XSS?

6/20/2022, 6:12:34 PM
codelikecraze:

No. But I might be able to in the future. You should add an option for a developer mode that enables this, and exposes send message and onmessage functions.

6/20/2022, 6:13:56 PM