User inputs
File inclusionUnrestricted file uploadSQL injectionXSS (Cross-Site Scripting)CSRF (Cross-Site Request Forgery)SSRF (Server-Side Request Forgery)IDOR (Insecure Direct Object Reference)ORED Open redirectContent-Type jugglingXXE injectionInsecure JSON Web Tokens๐ ๏ธHTTP parameter pollution๐ ๏ธSSTI (Server-Side Template Injection)๐ ๏ธInsecure deserialization๐ ๏ธCRLF injection๐ ๏ธArbitrary file download๐ ๏ธDirectory traversal๐ ๏ธNull-byte injection
Last updated
Was this helpful?