1
0
mirror of https://github.com/minimaxir/big-list-of-naughty-strings.git synced 2025-09-25 13:19:15 +02:00

Merge pull request #12 from jlennox/master

Negative number validation errors. XSS attribute escapes without lt/gt/quote symbols.
This commit is contained in:
Max Woolf
2015-08-10 14:37:45 -07:00

View File

@@ -34,6 +34,10 @@ $1.00
0,,0
,
0,0,0
--1
-
-.
-,
999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999
NaN
Infinity
@@ -183,8 +187,13 @@ Z̮̞̠͙͔ͅḀ̗̞͈̻̗Ḷ͙͎̯̹̞͓G̻O̭̗̮
<img src=x onerror=alert('hi') />
<svg><script>0<1>alert('XSS')</script>
"><script>alert(document.title)</script>
><script>alert(document.title)</script>
'><script>alert(document.title)</script>
><script>alert(document.title)</script>
</script><script>alert(document.title)</script>
< / script >< script >alert(document.title)< / script >
onfocus=alert(document.title) autofocus
" onfocus=alert(document.title) autofocus
' onfocus=alert(document.title) autofocus
# SQL Injection
#