XSS in Localize.io

Disclosed: 2014-04-18 04:22:43 By siddiki To localize
Unknown
Vulnerability Details
During signup I used "></code><svg/onload=prompt(1)> as my password.Just after pressing sign up I was forwarded to a new page,where that page was showing my username and asked to click to view my password.When I clicked the javascript executed. Attachment: xss.png
Actions
View on HackerOne
Report Stats
  • Report ID: 7890
  • State: Closed
  • Substate: resolved
  • Upvotes: 2
Share this report