
This project demonstrates a reflected Cross-Site Scripting (XSS) vulnerability found in the Sassy Social Share plugin for WordPress. This vulnerability can be exploited via the heateor_mastodon_share parameter.
python exploit.py command in the terminal to run the script.requests library (install with pip install requests)This type of PoC should only be used for security research and educational purposes. Performing unauthorized tests on any system is against the law. Please follow ethical hacking rules and only test on authorized systems.
If you would like to contribute to this project, please submit a pull request or report your issues.
If you have any questions or suggestions, you can contact me:
This project is licensed under the MIT License.