xiunobbs icon indicating copy to clipboard operation
xiunobbs copied to clipboard

There are XSS vulnerabilities in the site introduction of the background setting interface

Open mlws1900 opened this issue 11 months ago • 0 comments

After logging in, visit this link http://127.0.0.0.0.3/admin/?setting-base.htm mlws Enter Payload in the site introduction box

Later, click to save Visit the homepage again, that is, the storage XSS will be displayed 1

mlws1900 avatar Mar 14 '24 14:03 mlws1900