绕过 Firefox 的 HTML Sanitizer API
portswigger.net | 研究 | #browser-security | #firefox | #xss | #svg | #html-sanitizer | #sanitizer-bypass
摘要
Gareth Heyes 绕过 Firefox 的 HTML Sanitizer API:SVG use 元素可从同源绝对 URL 导入并执行 JavaScript,即便上传文件受到 Content-Disposition: attachment 保护;已在 Firefox 102 修复。
- 发布时间
- 收录时间
Skip to content