~SH4DOW ROOT
Results
1
issues of
~SH4DOW ROOT
Saw a Stored XSS while creating an album with the name as that of the following payload at the following endpoint, Endpoint:- */admin.php?page=cat_list* Payload:- *alert('xss')* POC Demo:- [Demo](https://drive.google.com/file/d/1B3yip5wqYOXUESLCANWnuY45nBMKuysK/view?usp=sharing) Fixed it...