PortSwigger Blog

Finding client-side prototype pollution with DOM Invader

Last year we made it significantly easier to find DOM XSS, when we introduced a brand new tool called DOM Invader. This year, we've improved DOM Invader to make finding CSPP (client-side prototype pol
favicon
portswigger.net
portswigger.net
Create attached notes ...