Skip to content

Instantly share code, notes, and snippets.

@mhajder
Created August 12, 2018 14:38
Show Gist options
  • Save mhajder/9882658b7d760dea57e42dfb352f0cb2 to your computer and use it in GitHub Desktop.
Save mhajder/9882658b7d760dea57e42dfb352f0cb2 to your computer and use it in GitHub Desktop.
Polyglot XSS Playground
<?php
$payload = (isset($_GET['payload'])) ? $_GET['payload'] : "";
?>
<html>
<head><title>Polyglot XSS Playground</title></head>
<body>
<div><?php echo $payload; ?></div>
<div class="<?php echo $payload; ?>">text</div>
<div class='<?php echo $payload; ?>'>text</div>
<style><?php echo $payload; ?></style>
<a href="<?php echo $payload; ?>">text</a>
<!-- <?php echo $payload; ?> -->
<script>// <?php echo $payload; ?></script>
</body>
</html>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment