Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add new A7 - Cross-Site Scripting (XSS) web app (Rails) #438

Open
rafaveira3 opened this issue Oct 6, 2020 · 3 comments
Open

Add new A7 - Cross-Site Scripting (XSS) web app (Rails) #438

rafaveira3 opened this issue Oct 6, 2020 · 3 comments
Labels
hacktoberfest2022 https://hacktoberfest.globo.com

Comments

@rafaveira3
Copy link
Contributor

Motivation

SecDevLab's goal is to provide examples of how security vulnerabilities could be fixed, but we only have one example of Cross-Site Scripting from OWASP's 2017 Top 10.

It would be great if

We had another app illustrating this vulnerability and how it could be exploited by an attacker.

What we expect

The new app must have a complete README.md with all the steps on how to get the environment ready to run it, how it can be installed, and how an attacker could compromise it.

The app should be similar to the existing web apps, such as this one.

Note: It would be great if this app could be powered by Rails. 🙂

Tips

@daviluis321
Copy link

daviluis321 commented Oct 6, 2020

thanks, I will create an app for this issue ;)

@Krlier
Copy link
Contributor

Krlier commented Nov 3, 2020

thanks, I will create an app for this issue ;)

Hi, @daviluis321!

How's it going?

Can we help you with anything?

@Krlier Krlier removed the hacktoberfest2022 https://hacktoberfest.globo.com label Nov 9, 2020
@fguisso fguisso added the hacktoberfest2022 https://hacktoberfest.globo.com label May 17, 2022
@Perkles
Copy link

Perkles commented Oct 21, 2022

Hey @Krlier and @fguisso I just finished #602.
Could you take a look when you have some time ?

cheers✨

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
hacktoberfest2022 https://hacktoberfest.globo.com
Projects
None yet
Development

No branches or pull requests

5 participants