All Levels/

URL Parameter

Cross-Site Scripting
Easy

Objective

The page reads from the URL. But does it sanitize?

Submit Flag