xss
Here are 193 public repositories matching this topic...
A web browser with dynamic data-flow tracking enabled in the Javascript engine and DOM, based on Mozilla Firefox (https://github.com/mozilla-firefox/firefox). It can be used to identify insecure data flows or data privacy leaks in client-side web applications.
-
Updated
Nov 10, 2025 - JavaScript
DOMPurify - a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify works with a secure default, but offers a lot of configurability and hooks. Demo:
-
Updated
Nov 10, 2025 - JavaScript
Use DOMPurify on server and client in the same way
-
Updated
Nov 8, 2025 - JavaScript
A comprehensive, enterprise-grade secure file upload web application built following OWASP best practices for secure coding, file management, and application security verification standards. Features a modern web interface with user authentication, admin panel, and robust security controls.
-
Updated
Nov 7, 2025 - JavaScript
A browser API to prevent DOM-Based Cross Site Scripting in modern web applications.
-
Updated
Nov 3, 2025 - JavaScript
pdf-xss-checker is a Node.js tool designed to scan PDF files for potential Cross-Site Scripting (XSS) vulnerabilities. It analyzes embedded scripts, forms and suspicious content to help identify security risks in PDFs before they're distributed or displayed in browsers.
-
Updated
Nov 2, 2025 - JavaScript
FrogPost: postMessage Security Testing Tool
-
Updated
Oct 30, 2025 - JavaScript
This repository is a collection of JavaScript gadgets that can be used to bypass XSS mitigations such as Content Security Policy (CSP) and HTML sanitizers like DOMPurify.
-
Updated
Oct 29, 2025 - JavaScript
XSS Data Collection Tool – A security testing tool designed to capture website input data and store it remotely.
-
Updated
Oct 22, 2025 - JavaScript
A powerful Google dork generator with 780+ templates for security researchers to find vulnerabilities like SQL injection, XSS, exposed admin panels, and sensitive files during authorized penetration testing.
-
Updated
Oct 22, 2025 - JavaScript
An awesome tour booking web app written in NodeJS, Express, MongoDB
-
Updated
Oct 21, 2025 - JavaScript
🕷️ XSS Listener is a penetration tool for easy to steal data with various XSS.
-
Updated
Oct 17, 2025 - JavaScript
Tiny fully featured AI ready zero dependency javascript framework
-
Updated
Oct 1, 2025 - JavaScript
Express 4.x and 5.x middleware which sanitizes user input data (in req.body, req.query, req.headers and req.params) to prevent Cross Site Scripting (XSS) attack.
-
Updated
Sep 26, 2025 - JavaScript
Improve this page
Add a description, image, and links to the xss topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the xss topic, visit your repo's landing page and select "manage topics."