https://www.khanacademy.org/coach/reports/activity XSS

Disclosed: 2014-04-09 17:06:12 By smiegles To khanacademy
Unknown
Vulnerability Details
Hi, I created a class called `"><img src=x onerror=alert(4)>`, I hope that you know how to make a class.. After that, when you go to https://www.khanacademy.org/coach/reports/activity and select a class it might not load directly but when you reloud the page it will (and persistent). Best regards, Olivier Beg
Actions
View on HackerOne
Report Stats
  • Report ID: 6409
  • State: Closed
  • Substate: resolved
  • Upvotes: 2
Share this report