Cross-site Scripting (XSS) - Reflected in microweber/microweber
Feb 18th 2022
Can escape the
meta tag because the user doesn't escape the double-quote in the
$redirectUrl parameter when logging out.
Proof of Concept
Through this vulnerability, an attacker is capable to execute malicious scripts.