https://tma.myagency.mg/?q=%3Csvg%20onload%3Dalert%281%29%3E

IndexController :: index

Request

GET Parameters

Key Value
q
"<svg onload=alert(1)>"

POST Parameters

No POST parameters

Uploaded Files

No files were uploaded

Request Attributes

Key Value
_access_control_attributes
null
_controller
"App\Controller\IndexController::index"
_firewall_context
"security.firewall.map.context.main"
_route
"index"
_route_params
[]
_stopwatch_token
"cdb293"

Request Headers

Header Value
accept
"*/*"
accept-encoding
"gzip, br, deflate"
cookie
"PHPSESSID=2a3jocqj7bign2mpa4cf46qel1"
from
"gptbot(at)openai.com"
host
"tma.myagency.mg"
user-agent
"Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.3; +https://openai.com/gptbot)"
x-openai-host-hash
"739551511"
x-php-ob-level
"1"

Request Content

Request content not available (it was retrieved as a resource).

Response

Response Headers

Header Value
cache-control
"no-cache, private"
content-type
"text/html; charset=UTF-8"
date
"Sat, 06 Dec 2025 12:37:50 GMT"
location
"/login"
x-debug-token
"8d31ea"

Cookies

Request Cookies

Key Value
PHPSESSID
"2a3jocqj7bign2mpa4cf46qel1"

Response Cookies

No response cookies

Session

Session Metadata

No session metadata

Session Attributes

No session attributes

Session Usage

0 Usages
Stateless check enabled

Session not used.

Flashes

Flashes

No flash messages were created.

Server Parameters

Server Parameters

Defined in .env

Key Value
APP_ENV
"dev"
APP_SECRET
"bd786ca26eb94a8f16d6bf441c31f3f7"
DATABASE_URL
"mysql://tma:7s9oGHTrTM20200xvXe!@127.0.0.1:3306/tma"
DEFAULT_PASSWORD
"123456789"
DEFAULT_TIME_UNDOING
"0.5"
MAILER_DSN
"smtp://web.marketing@myagency.mg:%3Du46%3CC%2Ffz@ssl0.ovh.net:587"
MAIL_NO_REPLY
"noreply@mytma.com"

Defined as regular env variables

Key Value
APP_DEBUG
"1"
CONTEXT_DOCUMENT_ROOT
"/var/www/html/tma/public"
CONTEXT_PREFIX
""
DOCUMENT_ROOT
"/var/www/html/tma/public"
GATEWAY_INTERFACE
"CGI/1.1"
HTTPS
"on"
HTTP_ACCEPT
"*/*"
HTTP_ACCEPT_ENCODING
"gzip, br, deflate"
HTTP_COOKIE
"PHPSESSID=2a3jocqj7bign2mpa4cf46qel1"
HTTP_FROM
"gptbot(at)openai.com"
HTTP_HOST
"tma.myagency.mg"
HTTP_USER_AGENT
"Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.3; +https://openai.com/gptbot)"
HTTP_X_OPENAI_HOST_HASH
"739551511"
PATH
"/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin"
PHP_SELF
"/index.php"
QUERY_STRING
"q=%3Csvg%20onload%3Dalert%281%29%3E"
REDIRECT_HTTPS
"on"
REDIRECT_QUERY_STRING
"q=%3Csvg%20onload%3Dalert%281%29%3E"
REDIRECT_SSL_TLS_SNI
"tma.myagency.mg"
REDIRECT_STATUS
"200"
REDIRECT_URL
"/"
REMOTE_ADDR
"74.7.243.239"
REMOTE_PORT
"49492"
REQUEST_METHOD
"GET"
REQUEST_SCHEME
"https"
REQUEST_TIME
1765024670
REQUEST_TIME_FLOAT
1765024670.0239
REQUEST_URI
"/?q=%3Csvg%20onload%3Dalert%281%29%3E"
SCRIPT_FILENAME
"/var/www/html/tma/public/index.php"
SCRIPT_NAME
"/index.php"
SERVER_ADDR
"173.212.229.4"
SERVER_ADMIN
"[no address given]"
SERVER_NAME
"tma.myagency.mg"
SERVER_PORT
"443"
SERVER_PROTOCOL
"HTTP/1.1"
SERVER_SIGNATURE
"<address>Apache/2.4.29 (Ubuntu) Server at tma.myagency.mg Port 443</address>\n"
SERVER_SOFTWARE
"Apache/2.4.29 (Ubuntu)"
SSL_TLS_SNI
"tma.myagency.mg"
SYMFONY_DOTENV_VARS
"APP_ENV,APP_SECRET,DATABASE_URL,MAILER_DSN,DEFAULT_PASSWORD,DEFAULT_TIME_UNDOING,MAIL_NO_REPLY"