#1 XSS on watchdocs.indriverapp.com

Disclosed: 2024-04-11 09:01:27 By maxdha To indrive
Low
Vulnerability Details
## Summary: XSS on watchdocs.indriverapp.com ## Steps To Reproduce: 1. Go to https://watchdocs.indriverapp.com/webview/v1/refresh-jwt?redirect=%22%3E%3Cimg%20src=faw%20onerror=alert(1)%3E 2. An alert window will popup {F2401964} ## Impact Allow executing js code on users browsers
Actions
View on HackerOne
Report Stats
  • Report ID: 2014955
  • State: Closed
  • Substate: resolved
  • Upvotes: 130
Share this report