Nicely asking our users to update the app through an XSS attack
Not OP, but according to the article some of the html payload originates from a 3rd party, stackoverflow.com - not a huge risk unless stackoverlow is compromised. Also the post

Not OP, but according to the article some of the html payload originates from a 3rd party, stackoverflow.com - not a huge risk unless stackoverlow is compromised. Also the post