Looks like a valid issue (cross-site content ?), although exploitation requires clicking on a rather suspicious untrusted link.
Looks like a valid issue (cross-site content ?), although exploitation requires clicking on a rather suspicious untrusted link.