All categories
Browser Quirks
CSS Parsing
Character Encoding
DOM Behavior
Entity Parsing
HTML Parsing
JavaScript Syntax
Regular Expressions
URL Handling
Web APIs
XML Parsing
XSS Execution
Login
Home
Vectors
Categories
All vectors
All collections
Browser diffs
RSS
Stats
Performance
Features
Differences
Network
Tools
Cheat sheet
Unicode table
Dynamic template
Blog
Blog home
RSS
Help
Home
Vectors
Categories
All vectors
All collections
Browser diffs
RSS
Stats
Performance
Features
Differences
Network
Tools
Cheat sheet
Unicode table
Dynamic template
Blog
Blog home
RSS
Help
Hacking...
disconnected
Distributed Fuzzing
Enabled:
Status:
disconnected
Your browser automatically contributes to distributed fuzzing when idle.
All Vectors
Vector name
User
Created
Type
Likes
1
HTML vector
nu11secur1ty
9/29/2024
HTML
0
⚠ Browser differences
39
1
39
39
HTML tags that force HTML mode inside SVG
hackvertor
8/2/2024
XSS
1
2
2
2
2
HTML tags that can clobber the credentials part of the URL
0x999-x
11/4/2024
XSS
1
19
19
19
HTML tags and attributes that can be used to access the URL
0x999-x
11/4/2024
XSS
1
50
50
50
50
HTML entities that create ASCII characters inside a JavaScript URL
hackvertor
6/25/2024
JS
4
3
3
3
3
HTML entities inside JavaScript URL before colon
hackvertor
6/25/2024
JS
0
2
2
2
2
HTML entities inside JavaScript URL
hackvertor
6/25/2024
JS
0
2
2
2
2
HTML entities before JavaScript URL
hackvertor
6/25/2024
JS
0
⚠ Browser differences
34
35
34
34
HTML elements that parse differently when rendered
hackvertor
4/19/2024
XSS
1
1
1
1
HTML elements that inherit properties which return the full URL
0x999-x
11/14/2024
XSS
0
15
15
15
15
HTML elements that are self closing or different text content
hackvertor
4/19/2024
XSS
2
3
3
3
3
HTML comment before greater than
hackvertor
3/30/2024
HTML
0
127
127
127
HTML TAGS Lists
Y4tacker
1/3/2025
XSS
0
7
7
7
Fuzzing weird script behaviour after script text
hackvertor
7/18/2024
XSS
0
33
33
33
33
Fuzzing for Max sanitized input (simplified)
vitorfhc
4/7/2025
XSS
0
⚠ Browser differences
149.2k
149.2k
149.2k
50.7k
Find WAF bypass for eval context
elieehel
11/22/2024
JS
0
1
1
1
Escape inline double quote
lUcgryy
3/7/2025
XSS
0
3
3
3
3
Entities that convert to less than in a iframe srcdoc
hackvertor
8/1/2024
XSS
0
3
3
3
3
Entities that convert to greater than in a iframe srcdoc
hackvertor
8/1/2024
XSS
0
4
4
4
4
Entities that cause an external URL before @
hackvertor
9/25/2024
XSS
4
Found
283
records
Page 5 of 15
«
1
2
3
4
5
6
7
8
9
10
»