The Web Hacking Incidents DatabaseLast update:07 November 2007
Incident WHID 2006-35
Yahoo mail does not filter properly the CSS "expression" keyword when it includes a comment that is encoded.
References: