This is an OpenPGP/MIME signed message (RFC 2440 and 3156)
--------------enigB17B0A45CEB4F5083D807DE8
Content-Type: text/plain; charset=ISO-8859-1
Content-Transfer-Encoding: quoted-printable


Sorry if i sound rude but:
Gadi Evron wrote:

> Looking even at web applications and their history one can easily tell =

if:
> 1. They are professionally written.
> 2. The vulnerabilities seen before and the ones we could find are not
> trivial or really say anything about the coder.
>=20
> That's how we chose WordPress for blogging.

So you mean that XSS is not trivial and difficult to spot ?
For today code XSS is unacceptable and speaks very for the author.


--
Javor Ninov aka DrFrancky
securitydot.net



--------------enigB17B0A45CEB4F5083D807DE8
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: OpenPGP digital signature
Content-Disposition: attachment; filename="signature.asc"

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.2 (MingW32)

iD8DBQFEMiTuck4kcwaj+YIRAs5nAJ4rBjT4JCzKX/60goxWhwxb+E08TwCfQBlL
v6BSv51Kj3HWh9nMybI3st0=
=YCZ5
-----END PGP SIGNATURE-----

--------------enigB17B0A45CEB4F5083D807DE8--