embedd
embedd copied to clipboard
HTML is embedded without escaping (possible XSS)
It looks like our website https://clickhouse.tech/blog/en/ is using your script to embed comments from Hacker's News. It leads to possible XSS and broken HTML markdown.