hey .. Vulnerable : JBoss Portal web : http://jboss.org XSS : 1- http://labs.example.org/portal/community?noproject="> Discovered By BLacK ZeRo bl4ck@bsdmail.org Best regards ,,