Keep the two inputs that found the marker-regex bug
Found by the soak tier's second session on astra. An input that once found
a bug is worth more than the compute that produced it, so it stays in the
seed corpus whether or not the bug is fixed.
The first is the finding as the fuzzer produced it: substitution emitting
live template syntax. The second is the minimal form of the same root
cause, a }} inside a quoted filter argument truncating the marker.
Details in GoingsOn problem subst-substitute:4def8fda6141.
Author: Max Johnson <me@maxj.phd> · 2026-08-11 23:33 UTC