aszx87410 / writeups-review

1 stars 0 forks source link

svg #11

Open aszx87410 opened 2 years ago

aszx87410 commented 2 years ago

svg 也能 SSRF https://infosecwriteups.com/my-first-bug-blind-ssrf-through-profile-picture-upload-72f00fd27bc6

還可以 xss,很賺