Web Security Academy Labs

Reflected XSS Lab

This lab contains a simple reflected cross-site scripting vulnerability in the search functionality.

Access Reflected XSS Lab

Stored XSS Lab

This lab contains a stored cross-site scripting vulnerability in the comment functionality.

Access Stored XSS Lab

Lab Instructions:

For the Stored XSS Lab: Submit a comment that calls the alert function when the blog post is viewed.

Flag: IDS{1c8a5c15517d898e873a11dd32a19fa4}