A bypass for AWS WAF has been discovered for SQL injection vulnerability. The payload used is '%27 OR 1=1–'. This allows an attacker to bypass the AWS WAF protection and execute SQL injection attacks. For more technical details, check out the blogpost.
