XSS
Impact
Reflected (Non-Persistent)
Stored (Persistent)
DOM-based
Entry Points
# Payloads
Popular
Context Breaking
HTML Context
Attribute Context
JavaScript Context
Bypassing
Without Event Handlers
Without Space
Without Slash (/)
Without closing angular bracket (>)
Without alert, confirm, prompt
Without a Valid HTML tag
Mitigation
Last updated