The Tech Diary of an IT support geek

  • Home
  • Android
  • iOS
  • Mobile
  • PC
  • Tips
  • Contact US
Home » StumbleUpon vulnerable to Reflected Cross site scripting

StumbleUpon vulnerable to Reflected Cross site scripting

A security researcher, Rafay Baloch, has discovered Cross site scripting vulnerability in the StumbleUpon , One of the famous social bookmarking website with alexa rank of 149.

“Few days before, while i was hunting for vulnerabilities inside stumbleupon.com,” Rafay said in his blog post. “Fiddler helped me obtain a non persistent XSS vulnerability inside stumbleupon”

He send notification about the vulnerability to StumbleUpon, however there is no response from other side.

“For security reasons i cannot disclose the URL and parameters for the injection, I hope stumbleupon fixes the vulnerability pretty soon.” researcher said.

At the time of writing, the vulnerability is not patched and we are able to exploit the vulnerability.  In fact, i inject a redirection code that successfully redirects me to the given url.  So Continue Reading StumbleUpon vulnerable to Reflected Cross site scripting

  • Facebook
  • Twitter
  • LinkedIn
  • WhatsApp
  • Reddit

Related

Posted by Obasi Miracle on this date: Leave a Comment
Shortlink:

Sign Up in Seconds

Join us to get latest posts (ONLY) delivered to your inbox. No Spam, We Promise!

About Obasi Miracle

I am a dedicated web developer with interest in blogging and app development. I have lots of buddies and always ready to connect with like-minded pals - See more about me.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Next PostVerify your facebook account ” spam steals authentication token
Previous PostSecurity flaw in Facebook exposes user phone numbers

RSS Inside: 3rd Planet Techies

  • Sunny Mining Launches Next-Generation App to Transform Smartphones into Crypto Earning Engines
  • Kie.ai Unlocks Affordable Veo 3 API Access to Developers and Teams
  • 10 Best Motorola Smartphones for 2025 Shoppers
  • How Datacenter Proxies Power High-Speed Web Access at Scale

Sign Up in Seconds

Join us to get the latest posts (ONLY) delivered to your inbox. No Spam, We Promise!

Recent Posts

  • Stellar Converter for OLM Review: Features and How to Use Guide
  • How to Connect Bluetooth Keyboards to Android Phones and Tablets
  • How to Convert YouTube Music Videos to MP3
  • Top 10 Free Email List Sites To Get Free Leads For Your Marketing Campaigns

Looking For?

mtn cheat for android, how to transfer data on etisalat, how to share data on airtel, How to share data on etisalat, mtn free browsing cheat for android phones, how to transfer mb on etisalat, mtn mb cheat for android, mtn free browsing on android, how to transfer data on airtel, latest mtn cheat for android, mtn free browsing cheat codes with unlimited data downloads, how to share airtel data, mtn cheat code for android, best airtel tariff plan for browsing, 2go for windows phone, sharemobile ro, how to transfer etisalat data, mtn cheats for android, etisalat data transfer, airtel data share
© 2025. The Tech Diary of an IT support geek. Privacy Policy