Warning: Undefined variable $escaped in /app/challenges/medium01.php on line 3
Deprecated: preg_replace(): Passing null to parameter #3 ($subject) of type array|string is deprecated in /app/challenges/medium01.php on line 3
Hello, !
inject
src
<script src="hook.js"></script>
<?php
$escaped = preg_replace("/<script>/i", "", $escaped);
?>
<h1>Hello, <?= $escaped ?>!</h1>
<h1>inject</h1>
<form>
<input type="text" name="payload" placeholder="your payload here">
<input type="submit" value="GO">
</form>
<h1>src</h1>
<?php highlight_string(file_get_contents(basename(__FILE__))); ?>