Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-109044. PoCs published by AutoSec Tools.
AI-analyzed exploit summary The exploit demonstrates a reflected XSS vulnerability in Kryn.cms 0.9 by injecting a malicious script via the `_kurl` parameter. The payload `%3Cscript%3Ealert%280%29%3C/script%3E` bypasses insufficient input sanitization, executing arbitrary JavaScript in the victim's browser context.
Description
Kryn.cms 0.9 - '_kurl' Cross-Site Scripting
Exploits (1)
The exploit demonstrates a reflected XSS vulnerability in Kryn.cms 0.9 by injecting a malicious script via the `_kurl` parameter. The payload `%3Cscript%3Ealert%280%29%3C/script%3E` bypasses insufficient input sanitization, executing arbitrary JavaScript in the victim's browser context.