Written by DPTuesday, 5 October 2010Three more critical vulnerabilties have been reported for AmericanExpress.com… The other XSS is still pending a fix. “PaPPy” has reported an open redirect vulnerability in search.americanexpress.com and one XSS bug on the card reviews forum. search.americanexpress.com Open Redirect mirror www201.americanexpress.com XSS mirror “d3v1l” from Security-Sh3ll has reported a cross-site scripting hole
