| Entities allowed before slashes on a protocol relative URL | hackvertor | 7/6/2024 | JS | 0 |
9 | Entities allowed inside host | hackvertor | 7/6/2024 | JS | 0 |
| Entities that are normalized for e | hackvertor | 7/12/2024 | JS | 0 |
| Quotes | dogspyagent | 7/13/2024 | XSS | 0 |
| HTML-Encoded Attribute Escape | IDKdir | 7/13/2024 | XSS | 0 |
1 | Characters that can break out of an inline style with double quotes | 0xdef1ant | 7/13/2024 | XSS | 0 |
1 | Characters that can break out of an inline style with single quotes | 0xdef1ant | 7/13/2024 | XSS | 0 |
1 | Characters that can break out of an inline style background-image url | 0xdef1ant | 7/13/2024 | XSS | 1 |
6 6 | ToUpperCase Improper Character Morphing | IDKdir | 7/13/2024 | JS | 1 |
1143 | Mutated XSS Attributes | IDKdir | 7/13/2024 | XSS | 0 |
| Host | IDKdir | 7/15/2024 | JS | 0 |
5 5 | Characters allowed before CSS selectors | hackvertor | 7/15/2024 | XSS | 0 |
| React DOM src | IDKdir | 7/15/2024 | JS | 0 |
| JavaScript Scheme starting with http | BinaryScary | 7/16/2024 | JS | 1 |
| Tags that HTML encode it's contents | hackvertor | 7/16/2024 | XSS | 0 |
| Tags that remove the span or are self closing | hackvertor | 7/16/2024 | XSS | 0 |
| Characters allowed to end a JS string | sqjor | 7/17/2024 | JS | 0 |
| Tags that cause child tags not to be found in the DOM | hackvertor | 7/18/2024 | HTML | 0 |
7 7 | Fuzzing weird script behaviour after script text | hackvertor | 7/18/2024 | XSS | 0 |
| Characters that can start an HTML comment | 0x999-x | 7/18/2024 | HTML | 1 |