Internet research firm Netcraft's toolbar has detected a cross-site scripting bug in Yahoo that could be exploited to steal authentication cookies.
http://www.scmagazineus.com/Yahoos-HotJobs-site-vulnerable-to-cross-site...