The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Question about lab Reflected XSS protected by very strict CSP, with dangling markup attack

Artur | Last updated: Oct 27, 2024 05:25PM UTC

While executing the lab, found that even using the solution you provided, the lab could not execute successfully, specifically, the csrf token is not passed through collaborator or exploit-server

Ben, PortSwigger Agent | Last updated: Oct 28, 2024 08:52AM UTC