December 15, 2024 at 11:40AM

■■■□□ Lesser-known XSS payloads that work with Next.js

Source: Twitter | TheYasinSpace
– Dynamic CSS injection

XSS

– CSS Variable injection

XSS

– Object Literal injection

XSS

– CSS Flexbox injection

XSS

– Unicode Character injection

XSS

– Dynamic Font injection

XSS

– CSS Animation injection

XSS

– Web Font injection

XSS

– CSS Grid injection

XSS

– CSS Transform injection

XSS

https://t.me/cKure/15024