encoding-bypass

2 articles
sort: new top best
clear filter
0 6/10

A reflected XSS vulnerability was discovered in a private program where URL parameters prefixed with 'utm_' were reflected without encoding in a JavaScript context. The breakthrough came from fuzzing parameter names themselves rather than values—specifically injecting JavaScript payload directly into the parameter name (e.g., 'utm_foobarbaz\')<>') which bypassed encoding applied to parameter values.

Rahul Maini
noob.ninja · devanshbatham/Awesome-Bugbounty-Writeups · 11 hours ago · details
0 6/10

A researcher discovered a Self XSS vulnerability in a group creation dialog box that could be escalated to a stored XSS affecting other users by combining it with a CSRF attack against an unprotected group creation endpoint, allowing arbitrary XSS execution when a victim visited a malicious link.

Abhishek
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 11 hours ago · details