New XSS Cloudflare Bypass!
<img ignored=() src=x onerror=prompt(1)>
During pentesting I realised that by using a random event handler, Cloudflare will focus on that and will ignore everything else. Tested on many websites. Simple, but beautiful!
New XSS Cloudflare Bypass!
<img ignored=() src=x onerror=prompt(1)>
During pentesting I realised that by using a random event handler, Cloudflare will focus on that and will ignore everything else. Tested on many websites. Simple, but beautiful!