ambionics / phpggc

PHPGGC is a library of PHP unserialize() payloads along with a tool to generate them, from command line or programmatically.
https://ambionics.io/blog
Apache License 2.0
3.2k stars 492 forks source link

Gadget Chains for these libraries. #177

Open xhat007 opened 9 months ago

xhat007 commented 9 months ago

Has anyone explored or identified any gadget chains within the following libraries?

smarty/smarty version ~3.1 phpmailer/phpmailer version ~6.0 google/apiclient version ^2.0 facebook/graph-sdk version ^5.7 aws/aws-sdk-php version * google/cloud-translate version ^1.9 phpoffice/phpspreadsheet version ^1.13

Any insights, findings, or resources related to this would be incredibly helpful.