reflected cross-site scripting (XSS) vulnerability affects the Zomato mobile application,

Smart devices software vulnerabilities
Post Reply
Shane1145
Posts: 1624
Joined: Wed Sep 25, 2024 2:31 pm

reflected cross-site scripting (XSS) vulnerability affects the Zomato mobile application,

Post by Shane1145 »

The issue **"Reflected XSS in Zomato Mobile - category parameter"** involves a vulnerability where attackers can manipulate the category parameter to inject malicious scripts into the Zomato mobile app. When users access the manipulated links, the injected scripts execute in their browsers, potentially compromising their data or redirecting them to harmful sites, highlighting the need for robust input validation.


https://hackerone.com/reports/230119
Post Reply