Import emails from Gmail are activate XSS
Unknown
Vulnerability Details
Hi,
If you choose to import your contacts via Gmail and the contact name contains JS, it will execute it.
Sasi
Actions
View on HackerOneReport Stats
- Report ID: 7913
- State: Closed
- Substate: resolved
- Upvotes: 1