-
-
Notifications
You must be signed in to change notification settings - Fork 1.9k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
False negative report #51
Comments
Hi there, This seems like a serious bug. |
I'm afraid I can't do that, as it is an internal application without access to the internet |
Ah alright, do you have a twitter or telegram? I need some debugging output from your side to figure out what's wrong. |
This issue will be closed after 24 hours due to inactivity :) |
Time's up :) |
if ( /world101.cfr.org/.test(window.location.href) ) {[-] WAF detected: CloudFlare Web Application Firewall (CloudFlare) |
Hi,
I wanted to use XSStrike on XSS I found, but it didn't recognize it. As you can see on the piucture, it's a very simple GET with a single parameter returned in the response. No WAF, no output encoding, no session required.
The text was updated successfully, but these errors were encountered: