webeasy

Easy 3

spbctf

Task: XSS challenge where user input is placed inside an SVG element. Solution: Inject a script tag directly inside SVG, which supports inline scripts unlike many other contexts.

$ ls tags/ techniques/
svg_script_injectionsvg_context_xss

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Create a free account with GitHub, then upgrade to Pro.

$ssh [email protected]