The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Hello I am trying to understand DOM XSS is.

Xtian | Last updated: Apr 24, 2020 11:48PM UTC

Hello I am trying to understand DOM XSS is. And my burp told my that my practice website with a downloaded JS Data is read from window.location.pathname and passed to $() via the following statements: var basePath=window.location.pathname; var $faqCategoryEle=$('a[href*="'+basePath+'"]'); I wonder how I exploit these. Ive been trying a lot. Now please I need help.

Hannah, PortSwigger Agent | Last updated: Apr 27, 2020 07:09AM UTC