Issue metadata
Sign in to add a comment
|
Security: Universal XSS - Googlechrome
Reported by
mrbasl...@gmail.com,
Jan 9 2017
|
||||||||||||||||||||
Issue descriptionVULNERABILITY DETAILS Found an universal XSS by editing a bookmark. VERSION Chrome Version: Version 55.0.2883.87 m (64-bit) Operating System: Windows 10 Home REPRODUCTION CASE 1. Edit a saved bookmark to; Name: Any URL: javascript:alert(document.domain) 2. Go to any website, ie, google.com, click the edited bookmark. XSS will trigger. Unlisted PoC: https://youtu.be/-cOrEb3R1GE
,
Jan 9 2017
Duplicate and not a valid security issue. Please take a look at issue 657380 . |
|||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||
Comment 1 by mrbasl...@gmail.com
, Jan 9 201720.4 MB
20.4 MB Download