A clever XSS bypass technique was discovered that involves tricking JavaScript itself using regex. This can potentially evade detection by a generic WAF. Details of the bypass technique should be analyzed and documented in a blog post for further examination and awareness.
What a nice WAF bypass!
Tricking JS itself using regex 😀Brilliant! ? https://t.co/kpNy6NiTxu
— Anton (@therceman) July 17, 2024