NHacker Next
  • new
  • past
  • show
  • ask
  • show
  • jobs
  • submit
XSS on using the legacy "Graphie To PNG" API (hackerone.com)
unsnap_biceps 18 hours ago [-]
I had no idea svg files allowed embedded JavaScript. What a great find
Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact
Rendered at 17:04:43 GMT+0000 (Coordinated Universal Time) with Vercel.