Reflected XSS with event handlers and attributes blocked.

Опубликовано: 27 Март 2026
на канале: z3nsh3ll
8,067
169

In this portswigger lab we see possible XSS attack vectors assuming the page is allowing us inject certain svg tags.


Support This Channel
======================

Please like and subscribe, it means a lot!

Please buy me a coffee so I can continue to make content.
https://buymeacoffee.com/zenshell

Join our Discord
  / discord  



00:00 Introduction
00:34 Exploring the lab
01:53 Probing for allowed tags
04:20 SVG basic features
06:43 SVG animate
09:00 Solving the lab
09:48 Summary