[HN Gopher] XSS on using the legacy "Graphie To PNG" API
___________________________________________________________________
XSS on using the legacy "Graphie To PNG" API
Author : Rahat_Ahmed
Score : 5 points
Date : 2025-04-14 11:33 UTC (3 days ago)
(HTM) web link (hackerone.com)
(TXT) w3m dump (hackerone.com)
| unsnap_biceps wrote:
| I had no idea svg files allowed embedded JavaScript. What a great
| find
___________________________________________________________________
(page generated 2025-04-17 23:00 UTC)