Robuta

https://advisories.gitlab.com/composer/opencart/opencart/GHSA-j2v2-3784-vr44/ Duplicate Advisory: openCart Server-Side Template Injection (SSTI) vulnerability | GitLab Advisory... GHSA-j2v2-3784-vr44 Duplicate Advisory: openCart Server-Side Template Injection (SSTI) vulnerability: Duplicate Advisory This advisory has been withdrawn... server sidetemplate injectionduplicateadvisoryopencart https://swisskyrepo.github.io/PayloadsAllTheThings/Server%20Side%20Template%20Injection/PHP/ Server Side Template Injection - PHP - Payloads All The Things Payloads All The Things, a list of useful payloads and bypasses for Web Application Security server sidetemplate injectionall thephppayloads https://advisories.gitlab.com/composer/getgrav/grav/CVE-2024-28118/ Server Side Template Injection (SSTI) | GitLab Advisory Database (GLAD) CVE-2024-28118 Server Side Template Injection (SSTI): Due to the unrestricted access to twig extension class from grav context, an attacker can redefine config... server sidetemplate injectionsstigitlabadvisory https://advisories.gitlab.com/composer/verbb/formie/CVE-2024-35191/ verbb/formie Server-Side Template Injection for variable-enabled settings | GitLab Advisory... CVE-2024-35191 verbb/formie Server-Side Template Injection for variable-enabled settings: Users with access to a form's settings can include malicious Twig... server sidetemplate injection https://www.proofpoint.com/us/blog/threat-insight/injection-new-black-novel-rtf-template-inject-technique-poised-widespread RTF Template Injection: Phishing Attachment Techniques | Proofpoint US Oct 20, 2023 - Proofpoint has conducted research on a new phishing attachment technique called RTF template injection, which APT threat actors are using. Learn more. template injectionrtfphishingattachmenttechniques https://advisories.gitlab.com/composer/getgrav/grav/CVE-2024-28117/ Server Side Template Injection (SSTI) | GitLab Advisory Database (GLAD) CVE-2024-28117 Server Side Template Injection (SSTI): Grav validates accessible functions through the Utils::isDangerousFunction function, but does not impose... server sidetemplate injectionsstigitlabadvisory https://advisories.gitlab.com/pypi/salt/CVE-2021-25283/ SaltStack Salt Server Side Template Injection | GitLab Advisory Database (GLAD) CVE-2021-25283 SaltStack Salt Server Side Template Injection: An issue was discovered in through SaltStack Salt before 3002.5. The jinja renderer does not... server sidetemplate injectionsaltstackgitlabadvisory https://advisories.gitlab.com/pypi/spacy-llm/CVE-2025-25362/ Spacy-LLM Server-Side Template Injection (SSTI) vulnerability | GitLab Advisory Database (GLAD) CVE-2025-25362 Spacy-LLM Server-Side Template Injection (SSTI) vulnerability: A Server-Side Template Injection (SSTI) vulnerability in Spacy-LLM v0.7.2 allows... llm servertemplate injection https://gowsundar.gitbook.io/book-of-bugbounty-tips/server-side-template-injection Server Side Template Injection | Book of BugBounty Tips server sidetemplate injectionbook ofbugbountytips https://advisories.gitlab.com/pypi/litellm/CVE-2024-2952/ LiteLLM has Server-Side Template Injection vulnerability in /completions endpoint | GitLab Advisory... CVE-2024-2952 LiteLLM has Server-Side Template Injection vulnerability in /completions endpoint: BerriAI/litellm is vulnerable to Server-Side Template... server sidetemplate injection https://advisories.gitlab.com/maven/com.xuxueli/xxl-job-core/CVE-2024-3366/ Xuxueli xxl-job template injection vulnerability | GitLab Advisory Database (GLAD) CVE-2024-3366 Xuxueli xxl-job template injection vulnerability: A vulnerability classified as problematic was found in Xuxueli xxl-job version 2.4.0. This... job templatexxlinjectionvulnerabilitygitlab https://advisories.gitlab.com/pypi/apache-superset/CVE-2021-41971/ Apache Superset SQL Injection when template processing is enabled | GitLab Advisory Database (GLAD) CVE-2021-41971 Apache Superset SQL Injection when template processing is enabled: Apache Superset up to and including 1.3.0 when configured with... https://advisories.gitlab.com/composer/getgrav/grav/CVE-2024-28116/ Server-Side Template Injection (SSTI) with Grav CMS security sandbox bypass | GitLab Advisory... CVE-2024-28116 Server-Side Template Injection (SSTI) with Grav CMS security sandbox bypass: Grav CMS is vulnerable to a Server-Side Template Injection (SSTI),... https://advisories.gitlab.com/composer/shopware/platform/CVE-2024-42356/ Shopware vulnerable to Server Side Template Injection in Twig using Context functions | GitLab... CVE-2024-42356 Shopware vulnerable to Server Side Template Injection in Twig using Context functions: The context variable is injected into almost any Twig... https://advisories.gitlab.com/golang/github.com/filebrowser/filebrowser/v2/CVE-2026-34530/ File Browser vulnerable to Stored Cross-site Scripting via text/template branding injection |... CVE-2026-34530 File Browser vulnerable to Stored Cross-site Scripting via text/template branding injection: The SPA index page in File Browser is vulnerable to... cross site scripting https://advisories.gitlab.com/npm/@nocobase/plugin-workflow-sql/CVE-2026-34825/ NocoBase Has SQL Injection via template variable substitution in workflow SQL node | GitLab... sql injection https://xiongshimould.en.made-in-china.com/product/JmBYQLclTgpV/China-Plastic-Injection-Dustbins-Garbage-Box-Trash-Can-Template-Mold-Manufacturer.html Plastic Injection Dustbins Garbage Box Trash Can Template Mold Manufacturer - Plastic Injection... Plastic Injection Dustbins Garbage Box Trash Can Template Mold Manufacturer, Find Details and Price about Plastic Injection Mold Trash Can Mold from Plastic... plastic injectiontrash candustbinsgarbagebox https://advisories.gitlab.com/composer/shopware/core/CVE-2024-42355/ Shopware vulnerable to Server Side Template Injection in Twig using deprecation silence tag |... CVE-2024-42355 Shopware vulnerable to Server Side Template Injection in Twig using deprecation silence tag: Shopware has a new Twig Tag sw_silent_feature_call...