book-manager
book-manager copied to clipboard
Borrow book has storage xss vulnerability
In borrow page, input ISBN "131e12e" and submit:
The return book page will alert the message:xss1