The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Lab: CORS vulnerability with basic origin reflection (exploit working only if delivered)

Lucio | Last updated: May 29, 2024 02:52PM UTC

The exploit works only when delivered to the victim. By clicking on "View exploit" the browser (even the Burp's browser) block third-party cookie and CORS requests. This problem affects also the solution exploit.

Ben, PortSwigger Agent | Last updated: May 30, 2024 07:26AM UTC