epinna / tplmap

Server-Side Template Injection and Code Injection Detection and Exploitation Tool
GNU General Public License v3.0
3.69k stars 666 forks source link

Initial templates for Jade (NodeJS) and Pebble SSTI #82

Open shelld3v opened 3 years ago

shelld3v commented 3 years ago

I have created 2 templates to let you have a look. Make sure that you have confirmed the accuracy (testing locally) of those templates before applying them. For more information:

There are more (Thymeleaf, Razor, Jinjava, ... with docs), but will stop from here!