wagiro/BurpBounty

Not finding XSS

marcelo321 opened this issue · 1 comments

Hello!

I have a website where the vulnerable parameter reflects all input directly in html code. For some reason the XSS templates aren't detecting it. I don't know if that's normal or there is something wrong.

Basically if you inject <script>alert()</script> in the only paramter provided you have XSS, so I don't know where the scanner is failing.

Hi @marcelo321 ,

Do you still have this problem?

Thanks,
Best regards.