According to mitre, xss is more atractive target than other known bugs. http://www.networkworld.com/news/2006/091806-cross-site-scripting-the-top-security.html?t5 How to defeat the no.1 security threat : http://www.computerworld.com/action/article.do?command=viewArticleBasic&articleId=9003710&pageNumber=1