Settings Page throws error instead of validating the input
I was trying to create a simple form as a support one to an article about cross-site scripting vulnerabilities. When the link name was having a <script> tag it immediately bombed with an error message instead of showing a validation message.
See attachment for more details.
----
Deepak Vasudevan
http://thamizhththendral.blogspot.com/