Arachni / arachni-ui-web

Arachni's Web User Interface.
http://www.arachni-scanner.com/
Other
225 stars 112 forks source link

XXS proof seems bugged #130

Closed bgerardw closed 7 years ago

bgerardw commented 7 years ago

I did a test scan against http://zero.webappsecurity.com/.

It found an XXS vulnerability and gave the following proof #<Arachni::Parser::Nodes::Element:0x00000003db7a10>

Is this working as intended?

Vector data: Type URL Inputs link http://zero.webappsecurity.com/faq.html question 1

Scrrenshoted.

proof

Zapotek commented 7 years ago

Fixed: https://github.com/Arachni/arachni/commit/d641941154fe003b03e286ae182a4f3a25812322