$350 XSS in 15 minutes

Bug Bounty Writeup about DOM XSS via JSONP + Parameter pollution

Anton (therceman)
InfoSec Write-ups
Published in
3 min readDec 23, 2022

--

Bug Bounty Writeup: $350 XSS in 15 minutes
Photo by Pepi Stojanovski on Unsplash

Hello 👋

This is my first and last Bug Bounty Writeup this year. 😀

I am sharing with you my latest XSS finding, which I’ve found 2 weeks ago.

This was the fastest and a bit unusual flow that I normally do when I search for XSS.

--

--