rdoc contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw is due to the program creating documents with the insecure darkfish.js file. This file may be used in some manner to allow a remote attacker to gain access to potentially sensitive cookie information. The exact method for performing this attack has not been outlined.