Featured vector

Safari 0.0
<script src=data:0x2calert(1)></script>

Fuzz vector cloud

5,456,811 Successful fuzzes

Shazzer

User information

Username Points
@0x6D6172696F 51
Vectors created
Characters allowed between CSS colon and expression
Characters allowed between CSS expression chars 01
Characters allowed between CSS expression chars 02
Characters allowed between CSS prop and expression
Characters allowed for padding in a data URI 001
Characters allowed for padding in a data URI 002
Characters allowed for padding in a data URI 003
Characters allowed for padding in a VBS URI 001
Characters allowed for padding in a VBS URI 002
Characters breaking CSS strings allowing expression
Characters breaking JavaScript Regex delimiter
Characters consuming backslashes and breaking JS strings
Characters ending CSS values allowing expressions
Characters ending HTML closing tags (HTML4)
Characters escaping JS comment delimiters 001
Characters in script inside XML elements 001
Characters in script inside XML elements 002
Characters in script inside XML elements 003
Characters in script inside XML elements 004
Characters that close a HTML comment 002
Characters that close HTML tags
Characters to break VBScript comments
Characters to end script tag via JavaScript regex 001
Characters to end script tag via JavaScript regex 002
Characters to separate class names in class attributes
Uncode sequences generating illegitimate ASCII