mercredi 6 septembre 2017

Denied protocol bypass to execute xss

I have a website which have permit to make the http link, so i was trying to pop up the alert box, by injecting the payload i.e. javascript:alert(1) when i click on the link it becomes by default,

denied:javascript:alert(1)

So is there any method to bypass it?

Aucun commentaire:

Enregistrer un commentaire