OWASP ZAP WAVE - Simple XSS in a Form parameter
Description
The 'zap-xss-cookie-basic' cookie is written to a the page without being sanitised and so is vulnerable to a simple script injection attack.
The cookie can be set via the 'name' parameter with a POST, view the page again to see its value.
Example