Identifying server-side template injection (SSTI) vulnerability due to the way an object is being passed into the template.
Exploiting the SSTI vulnerability to access sensitive data.
Stealing the framework's secret key.
Download
0 formats
No download links available.
Server-side template injection with information disclosure via user-supplied objects - Lab#05 | NatokHD