Get a Pentest and security assessment of your IT network.

News

PayPal addresses reflected XSS bug in user wallet currency converter

PayPal has fixed a reflected cross-site scripting (XSS) vulnerability that was discovered in the currency converter feature of user wallets. The vulnerability was reported by the bug bounty hunter Cr33pb0y through the HackerOne platform. The flaw was caused by a failure to properly sanitize the input in a parameter in the URL. The malicious script will execute in the browser page DOM of another user typically without their knowledge or consent. PayPal has implemented additional validation checks and sanitizer controls for user input.”]

Source: https://securityaffairs.co/wordpress/114570/hacking/paypal-reflected-xss-wallet.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks