My write-up of a Flash XSS in Summify.com (via ZeroClipboard plugin):


http://blog.prakharprasad.com/2013/0...-for-2013.html