XSS kinda

It's not 'cross' site scripting when you put it in yourself