HACKR.GG
LabsShopEasy — XSS in Attribute Context
XSSEasy

ShopEasy — XSS in Attribute Context

ShopEasy encodes HTML in the page body but reflects your search term raw inside a value attribute. Break out of the attribute to fire an XSS and steal the session cookie.

Step-by-step walkthrough
// Objective

Break out of an HTML attribute value to inject an event handler and steal the session cookie containing the flag.

ToolkitBrowser
// Machine control
Checking session...
// Submit flag