woke: self reposting post with ROP
woke: self reposting post with ROP
github.com/chaitin/Safe...
github.com/chaitin/Safe...
· Fider v0.38.1 — Fixed XSS vulnerability and updated dependencies
More self-hosted updates → https://selfhost.directory
#privacymatters #passwords #api #cli
· Fider v0.38.1 — Fixed XSS vulnerability and updated dependencies
More self-hosted updates → https://selfhost.directory
#privacymatters #passwords #api #cli
Check out how I got there in my writeup below:
jorianwoltjer.com/blog/p/hacki...
Check out how I got there in my writeup below:
jorianwoltjer.com/blog/p/hacki...
Scary for password reset tokens...
Blog post below:
www.aikido.dev/blog/roundcu...
Scary for password reset tokens...
Blog post below:
www.aikido.dev/blog/roundcu...
bronxi is here to show you 3️⃣ ways to escalate your xss bugs to the next level, using reflected xss and self xss!
Hit play and share with a friend who loves hunting for xss. 😈 youtu.be/0C9c-4hWi0Q?...
bronxi is here to show you 3️⃣ ways to escalate your xss bugs to the next level, using reflected xss and self xss!
Hit play and share with a friend who loves hunting for xss. 😈 youtu.be/0C9c-4hWi0Q?...
https://pad1ryoshi.medium.com/self-xss-csrf-xss-re-81bac80c969f?source=rss------bug_bounty-5
https://pad1ryoshi.medium.com/self-xss-csrf-xss-re-81bac80c969f?source=rss------bug_bounty-5
https://buff.ly/41iKROP
https://buff.ly/41iKROP
simonwillison.net/2025/Jul/6/s...
simonwillison.net/2025/Jul/6/s...
CVE ID : CVE-2026-104479
Published : Oct. 3, 2026, 12:16 a.m. | 46 minutes ago
Description : Shopclass before 6.2.0 contains a stored cross-site scripting vulnerability that allows self-reg...
CVE ID : CVE-2026-104479
Published : Oct. 3, 2026, 12:16 a.m. | 46 minutes ago
Description : Shopclass before 6.2.0 contains a stored cross-site scripting vulnerability that allows self-reg...
Author created a video showing how to build your own Blind XSS detection server using AI — fully self-hosted, deployable on your personal machine or even the cloud for free, and ready within minutes.
Author created a video showing how to build your own Blind XSS detection server using AI — fully self-hosted, deployable on your personal machine or even the cloud for free, and ready within minutes.
https://koadt.github.io/oss-oopssec-store/posts/self-xss-csrf-profile-takeover/
https://koadt.github.io/oss-oopssec-store/posts/self-xss-csrf-profile-takeover/
https://koadt.github.io/oss-oopssec-store/posts/self-xss-csrf-profile-takeover/
https://koadt.github.io/oss-oopssec-store/posts/self-xss-csrf-profile-takeover/
https://koadt.github.io/oss-oopssec-store/posts/self-xss-csrf-profile-takeover/
https://koadt.github.io/oss-oopssec-store/posts/self-xss-csrf-profile-takeover/
youtu.be/dFLcykwzN58
youtu.be/dFLcykwzN58
CVSS V3.1: MEDIUM
Deno is a runtime for JavaScript and TypeScript written in rust. Several cross-site scripting vulnerabilities existed in the `deno_doc` crate which lead to Self-XSS with deno doc --html. 1.) XSS in generated `search_index.js`,...
#security #infosec #cve-alert
CVSS V3.1: MEDIUM
Deno is a runtime for JavaScript and TypeScript written in rust. Several cross-site scripting vulnerabilities existed in the `deno_doc` crate which lead to Self-XSS with deno doc --html. 1.) XSS in generated `search_index.js`,...
#security #infosec #cve-alert