nullmethod Greg Ose

GitHub Vulnerability Responsible Disclosure

Reflected XSS in render.github.com and some parameter tomfoolery to prompt users to approve for a set of OAuth scopes and actually approve another set.

More Info