wallet

1 article
sort: new top best
clear filter
0 7/10

A bug bounty researcher discovered a technique to escalate a self-XSS vulnerability into a reflected XSS by encoding the malicious payload as a QR code, which bypassed client-side filtering and allowed automatic payload execution when scanned by victims without additional user interaction.

HackerOne Hein Thant Zin
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details