Hands-On Bug Hunting for Penetration Testers
上QQ阅读APP看书,第一时间看更新

URL

This is the URL of the vulnerability. When executing test, code such as alert(), sometimes it can be useful to alert a location (for example, alert(document.location)). This way, in a single screenshot, you can convey both preliminary proof of the bug and its location in the application.