PerfreeBlog icon indicating copy to clipboard operation
PerfreeBlog copied to clipboard

There is XSS at the place where the friend link is added in the background

Open N-Next opened this issue 2 years ago • 0 comments

In the background, XSS is inserted in the place where the friend link management is added, at the site name and website description, resulting in an XSS popup window appearing at the friend link display place in the foreground image <img src=x onerror=alert(1)> image

N-Next avatar Feb 26 '23 06:02 N-Next