http://jetpack.me/ Self XSS

Disclosed: 2014-07-08 10:00:24 By smiegles To automattic
Unknown
Vulnerability Details
Hi there :) I found a self XSS located at the front page of http://jetpack.me/, To reproduce this you have to scroll to the `Every feature!` part and search for `<img src=x onerror=alert(1)>` in the search engine. Best regards, Olivier Beg
Actions
View on HackerOne
Report Stats
  • Report ID: 14303
  • State: Closed
  • Substate: resolved
  • Upvotes: 1
Share this report