Skip to main content

articles

2023

Fetch Diversion
·2251 words·11 mins
articles bug bounty fetch diversion xss

API calls and requests for resources can sometimes be diverted toward a different endpoint on the same host, potentially resulting in DOM XSS’s that would otherwise be impossible to trigger, or other types of client-side vulnerabilities.