Skip to content

Conversation

yogeshojha
Copy link
Owner

Fixes XSS on Vulnerability Description #1262

@yogeshojha yogeshojha linked an issue Jul 2, 2024 that may be closed by this pull request
1 task
Copy link
Contributor

github-actions bot commented Jul 2, 2024

👋 Hi @yogeshojha,
Thank you for sending this pull request.
Please make sure you have followed our contribution guidelines.
We will review this PR as soon as possible. Thank you for your patience.

@yogeshojha yogeshojha merged commit 3805a41 into master Jul 2, 2024
@yogeshojha yogeshojha deleted the 1262-stored-xss-with-certain-vulnerability branch July 19, 2024 05:50
@mccurls
Copy link

mccurls commented Jan 29, 2025

This is not resolved.

Using latest version of ReNgine:

image

Just been testing rengine out and hit a deliberately vulnerable app with dalfox enabled. For every test that dalfox does, on the vulnerable endpoint, it appears that it reports that test case as a vulnerability. With 879 instances of XSS...

When reviewing those instances the first page of results does not trigger the issue, however when moving to the next paginated set of results, the XSS alerts from DALFOX start popping off.

image

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Stored XSS with certain Vulnerability
2 participants