<!-- mobian-agent-page publisher="dailydev" canonical="https://daily.dev/posts/bwapp-html-injection-reflected-url-low-security-level-cd8ngmge9" -->

---
title: bWAPP — HTML Injection — Reflected (URL) Low Security Level
description: HTML injection is a vulnerability that allows an attacker to inject arbitrary HTML code into a web page. This can lead to various consequences, such as session...
canonical: https://daily.dev/posts/bwapp-html-injection-reflected-url-low-security-level-cd8ngmge9
twitter:card: summary_large_image
twitter:site: @dailydotdev
og:type: website
og:site_name: daily.dev
og:title: bWAPP — HTML Injection — Reflected (URL) Low Security Level | daily.dev
og:description: HTML injection is a vulnerability that allows an attacker to inject arbitrary HTML code into a web page. This can lead to various consequences, such as session...
og:url: https://daily.dev/posts/bwapp-html-injection-reflected-url-low-security-level-cd8ngmge9
og:image: https://api.daily.dev/og/posts/CD8NgMgE9.png
og:image:alt: bWAPP — HTML Injection — Reflected (URL) Low Security Level
og:image:width: 1200
og:image:height: 630
og:locale: en
---

> ## Documentation Index
> Fetch the complete documentation index at: https://daily.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# bWAPP — HTML Injection — Reflected (URL) Low Security Level

**[InfoSec Write-ups](https://daily.dev/sources/infosecwriteups)** · 2 min read · 1 upvotes · 0 comments

## Summary

HTML injection is a vulnerability that allows an attacker to inject arbitrary HTML code into a web page. This can lead to various consequences, such as session cookie disclosure or page content modification. The post demonstrates how to identify and test for HTML injection using Burp Suite.

## Full article

daily.dev links to this article rather than hosting it. Read it at the original source: <https://infosecwriteups.com/bwapp-html-injection-reflected-url-5dacf7f6d942>

---

Tags: [#security](https://daily.dev/tags/security), [#cyber](https://daily.dev/tags/cyber), [#web-security](https://daily.dev/tags/web-security)

[View this post on daily.dev](https://daily.dev/posts/bwapp-html-injection-reflected-url-low-security-level-cd8ngmge9)

```json
{"@context":"https://schema.org","@graph":[{"@type":"Organization","@id":"https://daily.dev/#organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180},"sameAs":["https://twitter.com/dailydotdev","https://github.com/dailydotdev","https://www.linkedin.com/company/daily-dev-ltd"]},{"@type":"WebSite","@id":"https://daily.dev/#website","url":"https://daily.dev","name":"daily.dev","publisher":{"@id":"https://daily.dev/#organization"},"potentialAction":{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https://daily.dev/search?q={search_term_string}"},"query-input":"required name=search_term_string"}}]}
{"@context":"https://schema.org","@type":"TechArticle","headline":"bWAPP — HTML Injection — Reflected (URL) Low Security Level","url":"https://daily.dev/posts/bwapp-html-injection-reflected-url-low-security-level-cd8ngmge9","mainEntityOfPage":{"@type":"WebPage","@id":"https://daily.dev/posts/bwapp-html-injection-reflected-url-low-security-level-cd8ngmge9"},"datePublished":"2024-02-27T19:51:37.328Z","dateModified":"2024-05-09T09:21:59.549Z","description":"HTML injection is a vulnerability that allows an attacker to inject arbitrary HTML code into a web page. This can lead to various consequences, such as session...","image":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/cc6da3c8586f6f086d77a1a7a8ad8147?_a=AQAEufR","thumbnailUrl":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/cc6da3c8586f6f086d77a1a7a8ad8147?_a=AQAEufR","isAccessibleForFree":true,"articleSection":"InfoSec Write-ups","inLanguage":"en","publisher":{"@type":"Organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180}},"author":{"@type":"Organization","name":"InfoSec Write-ups","logo":"https://media.daily.dev/image/upload/t_logo,f_auto/v1/logos/f0dc21b5bbfd46fda36f7b4b53dd1705","url":"https://daily.dev/sources/infosecwriteups"},"commentCount":0,"discussionUrl":"https://daily.dev/posts/bwapp-html-injection-reflected-url-low-security-level-cd8ngmge9","interactionStatistic":[{"@type":"InteractionCounter","interactionType":{"@type":"LikeAction"},"userInteractionCount":1},{"@type":"InteractionCounter","interactionType":{"@type":"CommentAction"},"userInteractionCount":0}],"keywords":"security,cyber,web-security","timeRequired":"PT2M"}
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://daily.dev"},{"@type":"ListItem","position":2,"name":"InfoSec Write-ups","item":"https://daily.dev/sources/infosecwriteups"},{"@type":"ListItem","position":3,"name":"bWAPP — HTML Injection — Reflected (URL) Low Security Level"}]}
```

