Clicking go will execute a jquery-ui close dialog:
This dialog should have exploited a known flaw in jquery-ui:1.10.4 and allowed a XSS attack to occur
Clicking go will execute a jquery-ui close dialog:
This dialog should have prevented the above exploit using the EXACT same code in WebGoat but using a later version of jquery-ui.
Enter the contact's xml representation: