Stored XSS

Disclosed: 2014-04-20 02:53:31 By daksh To localize
Unknown
Vulnerability Details
Hey!! Steps to reproduce : 1) while making account add xss payload in username like : "><img src=a onerror=prompt(1);> 2) login using this . 3) Go to settings tab (http://www.localize.io/pages/settings) 4) XSS ll get executed . Attached PoC . Daksh
Actions
View on HackerOne
Report Stats
  • Report ID: 7873
  • State: Closed
  • Substate: resolved
  • Upvotes: 1
Share this report