extended-xss-search
extended-xss-search copied to clipboard
The new code doesn't follow redirects
Hi Damian,
I have been using the old XSSFinder code for a quite a bit and one of its feature is that it follows the http redirects and also checks for them and forward the request
I have been trying this new code and seems to be this feature is missing from this new code.
you can reproduce:
by setting http://forums.sonyinsider.com/topic/29805-sony-annual-report-1992/page/?xyz=lolwa
as url and observe the traffic in burp it never follows the redirect.
Thanks for this lovely code :heart:
Yeah you are right, will fix it by time (or maybe someone else is faster) - currently I have a lot other stuff to do, so my time on open source stuff is very limited!