XSSRF : The Matrimony of XSS and SSRF.
<p>Hey folks, <a href="https://www.linkedin.com/in/naumankh4n/" rel="noopener ugc nofollow" target="_blank">Nauman Khan</a> back in action! Today, we’re diving into the depth of <strong>XSSRF</strong> — where Server-Side Request Forgery (SSRF) meets Cross-Site Scripting (XSS).</p>
<p>Lets Learn How I was able to turn an Informative(P5) SSRF to an High(P2) Severity Vulnerability And Got $$$ for it.</p>
<h2><strong>Vulnerable Functionality:</strong></h2>
<ul>
<li>The web app provides users with an intuitive page creation wizard for marketing campaigns.</li>
<li>A standout feature allows users to seamlessly integrate external pages into their marketing content.</li>
</ul>
<p><a href="https://naumankh4n.medium.com/xssrf-the-unholy-matrimony-of-xss-and-ssrf-89f7abfca5b3"><strong>Click Here</strong></a></p>