You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Good catch, you're right, the docs are outdated.
Previously you would just see your bio in the text field to edit and it would not get rendered.
We silently changed that a while ago because it was so annoying to switch users to show off the XSS / see how the bio gets rendered.
W3D3
changed the title
XSS exploit documentation correct?
XSS exploit documentation is outdated
Oct 3, 2024
The XSS exploit documentation reads like:
user1
eg.admin
and add the<button>
to my profileuser2
visits my profile and can see the buttonHowever, at step 2, I can see my own button?
The text was updated successfully, but these errors were encountered: