Mar 27, 2026 - For details about updated CVE-2025-53521 (BIG-IP APM vulnerability), refer to K000156741.

Forum Discussion

Yozzer's avatar
Yozzer
Icon for Nimbostratus rankNimbostratus
13 years ago

Query parameter not lowercase

HI   i have noticed that the if statement below can be bypassed if the query parameter "biscuit" is altered in the browser to have an uppercase letter (Biscuit):   if {[matchclass [string ...