What's in a tag name? JavaScript, apparently
2026-09-22T08:51:47Z•73d1204cd6454e34573a8b6ac771674d9f2502a804b38560311fd6a5a5b428c6
CSP-bypassCSS-injectionHTTP-desynchronizationJWTPortSwiggerSAMLSSRFURL-validationWAF-bypassXSSauthentication-bypasscookie-securityoffensive-security-researchparser-discrepanciesrequest-smugglingsecurity-testingweb-cache-poisoningweb-security
What happened
PortSwigger Research feed aggregating web security research on HTTP desynchronization, parser discrepancies, authentication bypasses, cookie and WAF bypasses, CSS/XSS injection, URL validation, cache exploitation, SAML, JWT, CSP, and related offensive security techniques. The document is a research index rather than a report of one specific vulnerability; individual articles may describe high-impact attacks, but no single CVE is explicitly identified.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- portswigger_research
- Record identifier
- 73d1204cd6454e34573a8b6ac771674d9f2502a804b38560311fd6a5a5b428c6
- Enrichment time
- 2026-09-22T08:51:47Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.