Ramthu·FollowSep 9, 2024--1ListenShareIt's not a self xss When the victim accesses the page with the reflected Host header, the malicious script can execute then leads to an XSS attack and account take over