Test these feature areas on every program. Each has common recurring vulnerabilities.
< > “ '\ in name fields?@target.com email – blacklisted?site:example.com inurl:register inurl:&myemail%00@email.com – null byte truncation to real account?returnUrl, goto, return_url, back, returnTomyemail%00@email.com – truncation to real email?Host: evil.com< > ” '\ handling – where are characters reflected?{__schema{types{name}}}