cross-site scripting in get request

Disclosed: 2017-04-07 14:26:28 By wonderwomen007 To olx
Unknown
Vulnerability Details
https://olx.pt/ads/?q=?><script>alert(1)</script> where "q" is the vulnerable parameter which triggers cross-site scripting
Actions
View on HackerOne
Report Stats
  • Report ID: 150944
  • State: Closed
  • Substate: duplicate
  • Upvotes: 3
Share this report