June 4, 2026Bypassing a 3 layer SVG sanitizer: Stored XSS in MozillaThe bypass, the parser differential, and the missing write().9 min readBug BountyMozillaXSSSVG