cross-site-script-inclusion

1 article
sort: new top best
clear filter
0 7/10

A researcher chained two XSSi (Cross-Site Script Inclusion) vulnerabilities at Yahoo to steal user account information by extracting a valid crumb token from a dynamic JavaScript file and using it in a JSONP endpoint request, earning a $750 bounty.

Yahoo Burp Suite JSONP https://messenger.yahoo.com/embed/app.js https://jsapi.login.yahoo.com/w/device_users
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details