Course
This lab demonstrates a DOM-based XSS vulnerability where the JavaScript code uses the URL's anchor portion to dynamically write content into the page without proper escaping, allowing for potential XSS attacks.
Skills covered
Injection
Client Side
Topics
XSS
CWE-79
Included with PRO
Full course content
1 video
Ready to practice?
Get access to this lab and 600+ hands-on exercises with a PRO subscription.