webProeasy
Easy 4
web-kids20
XSS challenge where input is placed into an `<a href="">` attribute. The escape function filters dangerous patterns but uses case-sensitive regex.
$ ls tags/ techniques/
javascript_uri_case_bypasscase_sensitive_filter_evasion
🔒
Permission denied (requires tier.pro)
Sign in to access full writeups
Sign in with GitHub to continue. No email required.
$sign in$ grep --similar
Similar writeups
- [web][Pro]Easy 5— web-kids20
- [web][Pro]Easy 1— web-kids20
- [web][Pro]Easy 0— web-kids20
- [web][Pro]Easy 2— web-kids20
- [web][Pro]Medium 4 - Double Escape XSS— web-kids20