Node Chat, built using Socket.io, DocPad, Backbone.js and Twitter Bootstrap
Geek Repo:Geek Repo
Github PK Tool:Github PK Tool
DinisCruz-QA opened this issue 11 years ago · comments
Cross-site-Scripting payloads can be placed on the username field:
payload inserted:
payload executed (after payload inserted):
payload executed (on victim's browser
for reference see: