A3:2021 | Cross Site Scripting (XSS) (8) | Cycubix Docs
Self XSS or reflected XSS?
You should have been able to execute the script with the last example. At this point, it is considered 'self XSS,' though.
Why is that?
That is because no link triggers that XSS. You can try it yourself to see what happens … go to:
Click on the link given on WebGoat and you will see the following:
PreviousA3:2021 | Cross Site Scripting (XSS) (7) | Cycubix DocsNextA3:2021 | Cross Site Scripting (XSS) (9) | Cycubix Docs
Last updated