Cross-site Scripting (XSS) - Reflected in falconchristmas/fpp
Valid
Reported on
Jun 2nd 2021
✍️ Description
Reflected XSS in playlists.php when a user asked to add a note in Sequence Entry, resulting in XSS.
🕵️♂️ Proof of Concept
https://drive.google.com/file/d/1uU9IxbH3A45V8BSgtFOBrc5Gwj7S7k56/view?usp=sharing
💥 Impact
This vulnerability is capable of doing Reflected XSS.
to join this conversation