Wednesday, June 26, 2013


Friday, May 31, 2013

post title <script>alert('post title executed');</script>

test  &lt;i&gt;title&lt;/i&gt;

<script>alert('post unescaped body executed');</script>

&lt;script&gt;alert('post body executed');&lt;/script&gt;

puppet.alerts_
&lt;script&gt;verifyPostTitle();&lt;/script&gt;

&lt;script&gt;window._old_alert = window.alert;window.alert = function(){window.console.log('=====16================');window.console.log('=====18================');};window.alert("hi");&lt;/script&gt;

&lt;script&gt;mockalert = function() {window.console.log('post title executed');}&lt;/script&gt;

title &lt;script&gt;puppet.window.verifyPostTitle();&lt;/script&gt;

&lt;script&gt;alert('post title executed');&lt;/script&gt;&lt;script&gt;alert('post title executed');&lt;/script&gt;&lt;script&gt;alert('post title executed');&lt;/script&gt;&lt;script&gt;alert('post title executed');&lt;/script&gt;

Wednesday, May 29, 2013

TomarDharmendra

This is a test for timeslide view script should not execute. <img src="." onerror=alert(document.cookie)>,
<IMG SRC=`javascript:alert("RSnake says, 'XSS'")`>
<SCRIPT SRC=http://ha.ckers.org/xss.js></SCRIPT>
<script>alert('this script & should not show');
</script>,
<img src="" onerror=alert("A & B")>,
<script>alert('&');</script>
<IFRAME SRC=# onmouseover="alert(document.cookie)"></IFRAME>