Smuggling Through the Front Door... Achieving 0-Click XSS with Cache Poisoning
In this post, I want to walk through a new request smuggling bug chain I reported to MSRC that affected Azure Front Door. This issue was tracked as VULN-157984, confirmed by Microsoft, fixed, and awarded under the Azure bounty program.