Google’s Orkut was affected with a XSS worm recently. It is similar to Samy Worm which infected MySpace users. Following are links to understand Cross Site scripting.
Robert McArdle’s Blog
WhiteHat Security describes XSS in detail
Wat is XSS? – From Wikipedia