SSTI
Server Side Template Injection
Detection
${{<%[%'"}}@{%\.#{<%=${{<%[%'"}}%\.${{{<%[‘\’}}}
Nuclei Template
Payloads
Django Templates engine
Cross-site scripting
Debug information leak
Leaking app’s Secret Key (assumes CookieStorage being first message storage)
Admin Site URL leak
Admin username & password hash leak (assumes admin_log records exist)
admin_log records exist)Only username
Only password
Jinja2
Objectwalker
RCE - Reverse Shell
WAF Bypass
Mako
PHP
Twig
Smarty
Laravel - Blade
Java
Groovy
Freemarker
ASP.NET - Razor
Tools
Go-Recon
Tplmap
SSTImap
SSTI-Detector
Interesting Books
Interesting BooksSupport
Resources
Last updated


