Tweets can often be mean and nasty, but they cant physically hurt you — until now. A flaw in Tweetdeck lets users tweet out executable JavaScript code, which can create anything from annoying popups in Tweetdeck feeds to ways to an easy way for attackers to hijack your account. This cross-site scripting (XSS) flaw has already been patched, but Tweetdeck users need to log out and then log back into their accounts in order to get the update.