Just an FYI.
I had a report of a problem on a page which was showing 'Shoppermaster' links.
Impossible to know exactly how this happened, but I suspect a user was editing this content using a browser that had been compromised by the Shoppermaster malware. The malware looks through the code of a page, and inserts links on certain keywords.
Normally, this would only happen on page load, and only affect the user with the malware, however, in this case, I believe the malware inserted links into the html presented by the wysiwyg editor, the user had write access to the content, and saved the malware links into the code of the page, where everybody could see them.
I've never seen anything like it, but it presents a pretty amazing and troubling attack vector - what if the Malware was tweaked to recognise the URLs/patterns of the edit interfaces of major CMS software, and quietly inserted itself into the code, to be presented to all visitors.
Ouch!
Might switch to markdown!!