Escaping the iframe via exceptions

Disclosed: 2015-12-29 20:46:52 By benburrill To khanacademy
Unknown
Vulnerability Details
You can throw an object with an `html` property to run arbitrary js [Here](https://www.khanacademy.org/computer-programming/new-program/5946036004192256) is an example program that modifies a user's profile. I made the program as private as possible by saving it with nouser and drawing nothing in the hopes that it will be ignored, but if you want me to delete it, I will. The program will change your bio, so if you don't want that to happen, log out first.
Actions
View on HackerOne
Report Stats
  • Report ID: 103989
  • State: Closed
  • Substate: resolved
Share this report