flipkart-incubator / Astra

Automated Security Testing For REST API's
Apache License 2.0
2.49k stars 394 forks source link

Analysis of XSS #112

Open GiJ03 opened 3 years ago

GiJ03 commented 3 years ago

Astra detected that endpoint is vulnerable to XSS. But where is the payload..and how it detected? Endpoint tried: http://testfire.net/search.jsp?query=ss