Burp Suite User Forum

Create new post

XPath Injection Validation

McCain, | Last updated: Jun 17, 2020 09:05PM UTC

One of our developers working this problem asked why they are getting the following (Some: Control Cookie contains blacklist: ' in ASP.NET_SessionId=XXXXXXX; __AntiXsrfToken=XXXXXX99228b4d7 But when they attempt to reproduce the issue, they get a different value returned: Control __AntiXsrfToken contains blacklist: ' in XXXXXX013e07b089da' Could you help us better understand the issue in order for remediation?

Liam, PortSwigger Agent | Last updated: Jun 18, 2020 10:07AM UTC

Would it be possible to send the full issue detail to support@portswigger.net?

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.