Find WAF bypass for eval context

Find what characters are allowable inside `javascript` in `eval` (redundant much?)

Created by: elieehel

Created on: Friday, November 22, 2024 at 4:20:16 PM

Updated on: Saturday, November 23, 2024 at 10:43:16 AM

Vector type: JS

Vector charset: UTF-8

Code used before fuzz:
let v = '';
Template used:
try { v = "javasc$[chr]ript$[chr]:(1)"; if (eval(v)) { console.log(v); log('$[i]') } } catch(e) { v = '' }
Code used after fuzz:
console.log("after fuzz", v);
Your browser was detected as:
Detecting... Detecting... Detecting... Detecting...

Fuzz results

No results found.