Friendica
  • All
  • Persons
  • Organisations
  • News
  • Groups
  • Relays
  • AI
  • nvda
  • cloudflare
  • rust
  • opensource
  • a11y
  • Accessibility
  • nvidia
  • nvdasr
  • curl
Show More
  • music
  • linux
  • google
  • GMail
  • MutualAid
  • foss
  • deltachat
  • aws
  • Germany
  • signal

    • Local community
    • Global community
    • Global community
      • Local community
2025-11-21 13:43:27 2025-11-21 13:43:27 2025-11-21 13:38:12 9241295

Martin Holland
Martin Holland
mastodon - Link to source

Martin Holland

7 minutes ago • •

Martin Holland

7 minutes ago • •


How far will it go this time?
This post from #Mastodon can reach the whole #Fediverse, #Bluesky & more.
That's #Sharkey, #Misskey, #Pixelfed, #Mbin, #Lemmy, #Friendica, #Hometown, #Akkoma…

If you see it, please share it.

#SocialMedia !fediverse@piefed.social

The colorful Fediverse-logo
#friendica #fediverse #Mastodon #pixelfed #misskey #socialmedia #hometown #lemmy #bluesky #akkoma #sharkey #mbin
  •  Languages
  •  Search Text
  •  Share via ...
2025-11-21 13:42:26 2025-11-21 13:42:26 2025-11-21 13:42:25 9241289

SuspiciousDuck
SuspiciousDuck
mastodon - Link to source

SuspiciousDuck

2 minutes ago • •

SuspiciousDuck

2 minutes ago • •


chcem k tomu napísať niečo zmysluplné ale je to ťažké tak napíšem iba uvtos dubnica nad váhom a tie grafity na obálke nie sú moje
  •  Languages
  •  Search Text
  •  Share via ...
2025-11-21 13:41:38 2025-11-21 13:41:38 2025-11-21 13:41:33 9241286

daniel:// stenberg://
daniel:// stenberg://
mastodon - Link to source

daniel:// stenberg://

3 minutes ago • •

daniel:// stenberg://

3 minutes ago • •


One of the mysteries of the world. People sending made up reports about a service on a URL that doesn't exist...
Hello,

Stored XSS can be submitted on reports, and anyone who will check the report the XSS will trigger.

Description:
Stored XSS, also known as persistent XSS, is the more damaging than non-persistent XSS. It occurs
when a malicious script is injected directly into a vulnerable web application.

Steps To Reproduce:
1- Go to https://app.curl.se/reports/custom/
2- Click New network report.
3- On the name, enter payload: "><img src=x onerror=alert(document.domain)>
4- Click Run and save then XSS will trigger.

Tested on Firefox and Chrome.

Impact:
The attacker can steal data from whoever checks the report.

Regards,
Richard
  •  Languages
  •  Search Text
  •  Share via ...
2025-11-21 13:33:56 2025-11-21 13:33:56 2025-11-21 13:33:55 9241275

NoiseBox
NoiseBox
mastodon - Link to source

NoiseBox

11 minutes ago • •

NoiseBox

11 minutes ago • •


The Halls of Power
https://media.fwoof.space/media_attachments/files/115/587/942/563/056/831/original/8705d79df6b2d279.mp3
  •  Languages
  •  Search Text
  •  Share via ...
  • <
  • >
⇧