Darn Vulnerable Flask App

Instructions

This one has reflected XSS. The form just nicely responds with your name and also accepts ?name= to respond with your name.


Reflected XSS