$ cat writeup.md…
$ cat writeup.md…
hackadvisor
Task: An Express application behind nginx caches HTML containing a proxy-derived host and provides an admin review bot. Solution: Poison the unkeyed X-Forwarded-Host value with attribute-breakout XSS, report the cached page, and decode the exfiltrated flag cookie.
Permission denied (requires tier.pro)
Sign in with GitHub, Discord, or Google to continue. No email required.
$sign in$ grep --similar