referer-header

1 article
sort: new top best
clear filter
0 6/10
vulnerability

A Medium-severity XSS vulnerability in an article embedding feature that exploits the Referer header value being reflected in the response body without proper sanitization. The attack succeeds only in Internet Explorer due to its lack of URL encoding in the Referer header, allowing script injection via a malicious referrer URL.

Arbaz Hussain HackerOne Internet Explorer Chrome Firefox
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details