// vectors by the html5security project (https://code.google.com/p/html5security/ & Creative Commons 3.0 BY), see CC-BY-LICENSE for the full license
var vectors = [
{
data:
'
X ',
sanitized: "",
},
{
data:
' &ADz&AGn&AG0&AEf&ACA&AHM&AHI&AGO&AD0&AGn&ACA&AG8Abg&AGUAcgByAG8AcgA9AGEAbABlAHIAdAAoADEAKQ&ACAAPABi',
sanitized:
"&ADz&AGn&AG0&AEf&ACA&AHM&AHI&AGO&AD0&AGn&ACA&AG8Abg&AGUAcgByAG8AcgA9AGEAbABlAHIAdAAoADEAKQ&ACAAPABi",
},
{
data:
' & :postMessage(importScripts('data:;base64,cG9zdE1lc3NhZ2UoJ2FsZXJ0KDEpJyk'))",
sanitized:
"0? :postMessage(importScripts('data:;base64,cG9zdE1lc3NhZ2UoJ2FsZXJ0KDEpJyk'))",
},
{
data:
"",
sanitized: "",
},
{
data: "",
sanitized: "",
},
{
data: " ",
sanitized: "",
},
{
data: " ",
sanitized: "",
},
{
data:
"X ",
sanitized: "X ",
},
{
data: " ",
sanitized:
' ',
},
{
data:
' ',
sanitized: "",
},
{
data:
" ... ",
sanitized:
" ... ",
},
{
data:
'01 ',
sanitized: "01",
},
{
data: " ",
sanitized: "",
},
{
data: "",
sanitized: "",
},
{
data: "X",
sanitized: "X",
},
{
data: ' ',
sanitized: "",
},
{
data:
'',
sanitized: "",
},
{
data: ' �script �alert(1)//�/script �',
sanitized:
"�script �alert(1)//�/script �",
},
{
data:
"",
sanitized: "",
},
{
data:
"",
sanitized: "",
},
{
data: " ",
sanitized: "",
},
{
data:
"X ",
sanitized: "",
},
{
data:
"1",
sanitized: "1",
},
{
data: ';1',
sanitized: ";1",
},
{
data:
"+ADw-html+AD4APA-body+AD4APA-div+AD4-top secret+ADw-/div+AD4APA-/body+AD4APA-/html+AD4-.toXMLString().match(/.*/m),alert(RegExp.input);",
sanitized:
"+ADw-html+AD4APA-body+AD4APA-div+AD4-top secret+ADw-/div+AD4APA-/body+AD4APA-/html+AD4-.toXMLString().match(/.*/m),alert(RegExp.input);",
},
{
data:
"",
sanitized: "",
},
{
data:
"1",
sanitized: "1",
},
{
data: " ",
},
{
data: '',
sanitized: "",
},
{
data: "",
sanitized: "",
},
{
data: '',
sanitized: "",
},
{
data:
'XXX XXX ',
sanitized:
"XXX XXX ",
},
{
data:
"1 ",
sanitized: "1",
},
{
data:
"1 ",
sanitized: '1 ',
},
{
data:
'XXX ',
sanitized: "XXX ",
},
{
data: ' ',
sanitized: " ",
},
{
data: ' ',
sanitized: " ",
},
{
data:
'\r\n \r\n\r\n\r\n ',
sanitized:
' \n\n\n><image xlink:href=" ',
},
{
data: ' ',
sanitized: " ",
},
{
data:
" \n
",
sanitized: " \n
",
},
{
data:
'XXX ',
sanitized: "XXX ",
},
{
data:
'\r\n\r\n\r\n\r\n\r\nHello\r\n',
sanitized: "\n\n\nHello\n",
},
{
data: "X",
sanitized: "X",
},
{
data: "XXX
",
sanitized: "XXX
",
},
{
data: 'XXX
',
sanitized: "XXX
",
},
{
data:
' ',
sanitized: "",
},
{
data: "",
sanitized: "",
},
{
data:
' ',
sanitized: "",
},
{
data:
' ',
sanitized: "",
},
{
data:
' ',
sanitized: "",
},
{
data: '',
sanitized: "",
},
{
data:
' \r\n ',
sanitized: "\n ",
},
{
data:
"",
sanitized: "",
},
{
data: '',
sanitized:
' ',
},
{
data: ' ',
sanitized:
' ',
},
{
data: "alert(1)//0 ",
sanitized: "alert(1)//0 ",
},
{
data: "",
sanitized: " ",
},
{
data:
'
',
sanitized:
'
',
},
{
data: 'XXX
',
sanitized: "XXX
",
},
{
data:
'XXX
',
sanitized: "XXX
",
},
{
data:
"\r\n\r\n\r\n\r\n\r\n '=\"foo\">",
sanitized: "\n\n\n\n",
},
{
data:
' // O10.10�, OM10.0�, GC6�, FF\r\n \r\n // IE6, O10.10�, OM10.0�\r\n // IE6, O11.01�, OM10.1�',
sanitized:
" // O10.10�, OM10.0�, GC6�, FF\n \n // IE6, O10.10�, OM10.0�\n // IE6, O11.01�, OM10.1�",
},
{
data:
']>&x; ',
sanitized:
"\n]>&x;",
},
{
data:
' ',
sanitized: "",
},
{
data:
"\n\n ",
sanitized: "",
},
{
data:
'\r\n]> ',
sanitized:
"\n]> ",
},
{
data:
'\r\n\tXXX \r\n ',
sanitized: "\n\tXXX\n",
},
{
data:
' ',
sanitized: "",
},
{
data: "x
",
sanitized: "x
",
},
{
data: "/ style=x:expression\\28write(1)\\29>",
sanitized: "",
},
{
data: '