From 7c0aa80a2c44fbcc12c24d8a73439f22fcfe3644 Mon Sep 17 00:00:00 2001 From: xanhacks Date: Wed, 1 May 2024 12:56:37 +0200 Subject: [PATCH] add 3 PoC --- content/docs/client-side/csp.md | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/content/docs/client-side/csp.md b/content/docs/client-side/csp.md index 5c954ed..b46ecc1 100644 --- a/content/docs/client-side/csp.md +++ b/content/docs/client-side/csp.md @@ -36,9 +36,9 @@ if (isset($_GET["xss"])) echo $_GET["xss"]; ``` Maximum parameters by default in PHP: -- `$_GET`: 1000 parameters -- `$_POST`: 1000 parameters -- `$_FILES`: 20 files +- `$_GET`: 1000 parameters - [PoC](https://gist.github.com/frevadiscor/e27177003e0f86f8b381e36d320b22d2) +- `$_POST`: 1000 parameters - [PoC](https://gist.github.com/frevadiscor/4ca1ecde477dba288176ff5fc674de17) +- `$_FILES`: 20 files - [PoC](https://gist.github.com/frevadiscor/855b960d41f4b8cf3b31450414ea5b84) ```python # ------------------[ <= 1000 parameters ]------------------