← All Labs
🛡 XSS INTERMEDIATE +80 XP · +40 no-hint bonus

DOM XSS — Search Highlighter

QuickDocs reads the URL fragment to highlight search terms in the article. The server never sees the fragment — but the client renders it. Find the DOM-based XSS.

https://bookshop.local/search