Sabitlenmiล Tweet

[Bypass Cloudflare] Open Redirect to XSS
Open Redirect
/login?redirectUrl=//evil,org --> redirect to evil,org
Escalate to XSS
/login?redirectUrl=javascript:alert(1) --> blocked by WAF
[1/2]
#bugbountytip #bugbountytips #infosec #BugBounty

English











