writeups.xyz writeups.xyz / Mizu (@Kevin_mizu)

Title Vulnerabilities Programs Authors
Playing with DOMPurify custom elements handling
Linux local electron application script-src: self bypass
Abusing Client-Side Desync on Werkzeug
EJS - Server Side Prototype Pollution gadgets to RCE
How I was able to rick roll every users on root-me.org