DiogoMRSilva / websitesVulnerableToSSTILinks
Simple websites vulnerable to Server Side Template Injections(SSTI)
☆391Updated 2 years ago
Alternatives and similar repositories for websitesVulnerableToSSTI
Users that are interested in websitesVulnerableToSSTI are comparing it to the libraries listed below
Sorting:
- List DTDs and generate XXE payloads using those local DTDs.☆631Updated last year
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆879Updated 3 years ago
- A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)☆623Updated last year
- A cheatsheet for exploiting server-side SVG processors.☆739Updated 4 years ago
- This Lab contain the sample codes which are vulnerable to Server-Side Request Forgery attack☆729Updated last year
- Issues with WebSocket reverse proxying allowing to smuggle HTTP requests☆368Updated 10 months ago
- 🎯 Server Side Template Injection Payloads☆663Updated 11 months ago
- Client Side Prototype Pollution Scanner☆518Updated 2 years ago
- Because just a dark theme wasn't enough!☆565Updated 6 months ago
- A simple web app with a XXE vulnerability.☆229Updated 3 years ago
- HackerOne "in scope" domains☆451Updated this week
- Tool to help exploit XXE vulnerabilities☆563Updated 2 years ago
- HTTP file upload scanner for Burp Proxy☆488Updated last year
- This repository contains all the XSS cheatsheet data to allow contributions from the community.☆422Updated 3 weeks ago
- ☆682Updated 2 years ago
- Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease appli…☆251Updated 6 months ago
- HopLa Burp Suite Extender plugin - Adds autocompletion support and useful payloads in Burp Suite☆753Updated last week
- Open Redirect Payloads☆621Updated 8 months ago
- ☆406Updated 3 years ago
- A wordlist of API names for web application assessments☆824Updated last week
- Content-Type Research☆618Updated last year
- List of XSS Vectors/Payloads☆1,234Updated 5 months ago
- HTTP file upload scanner for Burp Proxy☆410Updated 2 years ago
- Fetches javascript file from a list of URLS or subdomains.☆776Updated 2 years ago
- A tool for embedding XXE/XML exploits into different filetypes☆1,088Updated 6 months ago
- Use HTTP Smuggling Lab to learn HTTP Smuggling.☆349Updated 2 years ago
- SSRF plugin for burp Automates SSRF Detection in all of the Request☆586Updated 4 years ago
- Deriving RSA public keys from message-signature pairs☆322Updated last year
- DNS rebinding toolkit☆253Updated 2 years ago
- Burp Extension for a passive scanning JS files for endpoint links.☆787Updated last year