Web 19
- Python Format Function Vulnerability
- Javascript toLowerCase(), toUpperCase() Logical Bypass
- Javascript prototype pollution
- Spring View Name Manipulation Exploit (Thymeleaf SSTI)
- Flask debug mode exploit (RCE)
- PHP Xdebug RCE 취약점
- PHP mb_convert_encoding 취약점
- SSTI (Server Side Template Injection)
- XS-Search (Cross-Site Search)
- URL Encoding
- Relative Path Overwrite (RPO)
- CSS Injection
- CSRF (Cross Site Request Forgery)
- XSS (Cross-Site Script)
- HTTP Response Splitting and CRLF
- LFI
- XXE
- SQL Injection 공격 기법
- SQL Injection 필터링 우회