πŸ“¨
Notes
search
⌘Ctrlk
πŸ“¨
Notes
  • πŸ‘‹About me.
  • 🚩CTF writeups
    • 2022 CTFs
    • 2023 CTFs
    • 2024 CTFs
    • 2025 CTFs
  • πŸ“¦Rooms
    • HackTheBox
    • Tryhackme
  • APK pentesting
    • ADB Cheatsheet
    • Tools & Get Started
    • Pull & Patch
    • Static analysis
    • Dynamic Analysis
  • Web Security
    • File Upload Bypass
    • To remember LoG
    • SSTI
    • Eval bypass
    • HTTP Headers
  • Active Directory
    • πŸ–₯️what is? General info
    • LLMNR poisoning
    • Attack list for pentest
  • πŸŽ‘Overview (fundamentals/cheatsheet)
  • πŸ†Certifications
    • EJPT v2
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. Web Security

SSTI

Server Side Template Injection.

Resources, payloads & CTF Writeups

hashtag
Resources

LogoJinja2 SSTI - HackTricksbook.hacktricks.wikichevron-right
LogoServer Side Template Injection with Jinja2 - OnSecurityOnSecuritychevron-right
LogoMethod Confusion In Go SSTIs Lead To File Read And RCE - OnSecurityOnSecuritychevron-right
PreviousTo remember LoGchevron-leftNextEval bypasschevron-right

Last updated 10 months ago