XSS

Stands for "Cross-Site Scripting". An attack where untrusted scripts run in your page.

Analogy: Letting a stranger slip a note into your menu.