Discussion Forum: General: Message 1469595
 Previous Message   Next Message 
 Author: cosmicray View Messages Posted By cosmicray
 Posted: May 15, 2024 07:54
 Subject: Links are acceptable in the extended descrip?
 Viewed: 62 times
 Topic: General
Cancel Message
Cancel
Reply to Message
Reply
BrickLink
ID Card

cosmicray (3496)

Location:  USA, Florida
Member Since Contact Type Status Collage
Oct 1, 2000 Contact Member Seller
Buying Privileges - OKSelling Privileges - OK
View Collage Pic
Store Closed Store: Cosmic Toys
While scrolling thru various listings (by other sellers), I noticed one that
said "You can see photos of the set in the extended description". Clicking
thru to the listing, then the extended description, showed me an external link
(without actually displaying the photos). I was surprised that external links
are allowed in the extended description.

My concern is that there is nothing vetting that the external link is actually
going to display an image, and my concern is heightened by this CVE:

https://nvd.nist.gov/vuln/detail/CVE-2022-38171x

While it has been addressed, not everyone may have applied the patches, and it
did expose a (very cunning) zero-day exploit that affected lots of platforms.

Nita Rae

1 Message in this Thread:

 Msg 1 « - cosmicray (3496) 13 days ago May 15, 2024 to General

 Previous Message   Next Message 

Entire thread on one page
This message and all its replies on one page