mm0@home:~$

[xss] lab dom xss in innerhtml sink using source l e11659210ee645ba8c21e993072fb3ef

[XSS] Lab: DOM XSS in innerHTML sink using source location.search


Untitled

Untitled

Untitled

we were able to inject HTML

"><u> test123 

Untitled

since we’re using inner HTML

Untitled

but no alert occurred

Untitled

Untitled

Untitled