A tweet mentioning a bypass using the payload 'onerrora=confirm()' for an unknown WAF vendor. The tweet suggests that the bypass is not related to DOM clobbering and points out that 'onerrora' is not a valid attribute. More details would be needed to analyze further.
