## https://sploitus.com/exploit?id=WPEX-ID:2FB28C77-3C35-4A2F-91ED-823D0D011048 1. Go to "Flattr" settings 2. In the "Flattr Username" enter the PoC: `j"><script>alert(1)</script>` 3. Save the changes and view the site to see the XSS