webProeasy
Medium 3 - JSON Injection XSS
web-kids20
XSS challenge from the sibearsxss series. Input must be valid JSON (validated via JSON.parse), then inserted into a JavaScript string inside single quotes.
$ ls tags/ techniques/
json_injection_xssjs_string_breakout
🔒
Permission denied (requires tier.pro)
Sign in to access full writeups
Sign in with GitHub to continue. No email required.
$sign in$ grep --similar
Similar writeups
- [web][Pro]Medium 1 - Script Src Attribute Breakout— web-kids20
- [web][Pro]Medium 4 - Double Escape XSS— web-kids20
- [web][Pro]Medium 2 - Regex Single Replacement Bypass— web-kids20
- [web][Pro]Easy 5— web-kids20
- [web][Pro]Easy 1— web-kids20