Back to directory
WRITEUP #3710

The beauty of chaining client-side bugs

XSSCRLF injectionCSP bypassDoSCSTI
by@MasterSEC_AR(Master SEC)
Program
-
Published
May 29, 2021
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://master-sec.medium.com/the-beauty-of-chaining-client-side-bugs-759e1091eabf
RELATED WRITEUPS
Bypassing CSP via URL Parser Confusions : XSS on Netlify’s Image CDN
XSSCSP bypass
Canary Token OSS Security Audit Report (Q2 2024)
XSSDoS
Type confusion attacks in ProseMirror editors
XSSType confusion
Self-XSS to ATO via Site Features
XSSSelf-XSS
How 100% Manual Hacking (Without Even Kali And Burp) Led To 2 Medium Vulnerabilities On YesWeHack
XSS

Built with ❤️ by Shubham Rawat