#xss

Live, measured metrics for the hashtag #xss from the open social web. Every number carries a named source and the time it was fetched. Nothing is estimated.

hashtag.org network · sponsored

Own #xss

This #name is available to claim. It becomes your portal on the open agent web: this very page, a keyword you rank for by an open public stake, and a verifiable identity for AI agents. Nobody else sells a page like this for every #name.

$5,313.74/ year · 3-character #name
Claim #xss$5,313.74/yrBuy on hashtag.space (web3)
card via hashtag.org · tokens via hashtag.space
6
Uses / 7 days
Mastodon
6
Accounts / 7 days
Mastodon
40
Recent posts
Mastodon
~0.1/hr
Recent pace
Mastodon · last 40
0.1
Avg reactions / post
Mastodon · last 40
Reddit posts / month
Reddit search
Open-web mentions
hashtag.org Firehose

Day-by-day usage

measured · mastodon.social (Mastodon public tags API) · fetched 2026-09-10 11:07 UTC
0
09-04
0
09-05
1
09-06
1
09-07
3
09-08
1
09-09
0
09-10

6 uses by 6 unique accounts across the window. Real per-day counts, not estimates. Newest bar is today so far.

Related hashtags

measured · mastodon.social (Mastodon public search API) · fetched 2026-09-10 11:07 UTC

Live pulse

measured · mastodon.social (Mastodon tag timeline) · fetched 2026-09-10 11:07 UTC

Everything below is measured over the latest 40 public posts (spanning ~781 hours).

Posting hours (UTC) — busiest: 13:00

00:0012:0023:00

Languages: English (26) · German (6) · Russian (3) · Polish (3) · Portuguese (1) · Italian (1)

Avg boosts / post: 0.6

Top of the latest posts

  • CVE-2026-78264 - Unauthenticated XSS in Toolset Blocks <= 1.6.26. CVSS 7.1. Update immediately. #CVE #XSS #infosec https://www.valtersit.com/cve/CVE-2026-78264/

    Hugo | DevOps | Cybersecurity@hugovalters102026-08-25 14:04 UTCView post →
  • CVE-2026-32556 - Unauthenticated XSS in Boost <= 2.0.4. CVSS 7.1. Currently unpatched. Audit systems and mitigate risk immediately. #CVE #XSS #infosec https://www.valtersit.com/cve/CVE-2026-32556/

    Hugo | DevOps | Cybersecurity@hugovalters112026-08-25 01:01 UTCView post →
  • Unser praxisnahes Intensivtraining „Hacking Extrem Web-Applikationen“ vermittelt Dir, wie echte Angreifer denken und wie Du Dich wirksam vor ihnen schützen kannst. Was Dich erwartet: ✅ Realistische Angriffe auf Webanwendungen und Backends ✅

    cirosec GmbH@[email protected]112026-08-19 13:42 UTCView post →

What “xss” means

Wikipedia

Cross-site scripting (XSS) is a type of security vulnerability that can be found in some web applications. XSS attacks enable attackers to inject client-side scripts into web pages viewed by other users. A cross-site scripting vulnerability may be used by attackers to bypass access controls such as the same-origin policy. XSS effects vary in range from petty nuisance to significant security risk, depending on the sensitivity of the data handled by the vulnerable site and the nature of any securi

Cross-site scripting” on Wikipedia (CC BY-SA) →

#xss across platforms

every network with a public tag surface

Follow #xss straight to each platform’s own tag page. Where a platform publishes open data we measure it above; the rest lock their numbers behind paid APIs, so we link rather than guess.

Every number above is measured from a named public API at the shown fetch time. Nothing is estimated or extrapolated. Platforms that lock their data behind paid APIs are not shown. Agents: the same numbers, as JSON, at /api/hashtags/xss