Skip to content

Conversation

@brendan-rsoc
Copy link

@brendan-rsoc brendan-rsoc commented Dec 22, 2025

We've noticed that websites with a lot of numbers on them tend to falsely trigger detections for arithmetic evaluation. This PR reduces false positive alerts by requiring arithmetic evaluation detection to meet the following criteria:

  • Result must not be preceded by a decimal point or another digit
  • Result must not be followed by another digit

Example of new behavior:

Request: 
1111*4

Response: 
123.4444 # Not a match
1244445567 # Not a match
content content 4444 content # Match

…results to be preceded by a decimal point or surrounded by any other digits
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant