[GH-ISSUE #18] TXT XSS Security Exploit #7

Closed
opened 2026-02-25 21:30:48 +03:00 by kerem · 1 comment
Owner

Originally created by @Scrumplex on GitHub (Nov 1, 2017).
Original GitHub issue: https://github.com/charlesabarnes/SPFtoolbox/issues/18

Originally assigned to: @charlesabarnes on GitHub.

If a domain has any HTML code in it's TXT tag it will be executed by the client machine.

Try with the following domain: txss.vuln.scrumplex.rocks

Originally created by @Scrumplex on GitHub (Nov 1, 2017). Original GitHub issue: https://github.com/charlesabarnes/SPFtoolbox/issues/18 Originally assigned to: @charlesabarnes on GitHub. If a domain has any HTML code in it's TXT tag it will be executed by the client machine. Try with the following domain: `txss.vuln.scrumplex.rocks`
kerem closed this issue 2026-02-25 21:30:48 +03:00
Author
Owner

@charlesabarnes commented on GitHub (Nov 1, 2017):

Good find! I'll get right on sanitizing it

<!-- gh-comment-id:341127931 --> @charlesabarnes commented on GitHub (Nov 1, 2017): Good find! I'll get right on sanitizing it
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
starred/SPFtoolbox#7
No description provided.