Issue metadata
Sign in to add a comment
|
Security: XSS
Reported by
mayurudi...@gmail.com,
Sep 16 2017
|
||||||||||||||||||
Issue descriptionI have found a strange behavior resulting in Cross Site Scripting. Step to reproduce:- 1.)Type javascript:alert(1) in url bar. XSS will trigger in browser. With the help of CSRF request this bug can be exploit remotely. I am attaching PoC with this . Chrome latest version is affected from this. Thanks |
|||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||
Comment 1 by mea...@chromium.org
, Sep 17 2017Status: WontFix (was: Unconfirmed)