6 ms·
The xss is stored via csrf. So an exploitation scenario would be that you visit a malicious page and then click in the search box on a new tab.
by mistaken 5y ago
The xss is stored via csrf. So an exploitation scenario would be that you visit a malicious page and then click in the search box on a new tab.