https://advisories.gitlab.com/composer/opencart/opencart/GHSA-j2v2-3784-vr44/
Duplicate Advisory: openCart Server-Side Template Injection (SSTI) vulnerability | GitLab Advisory...
GHSA-j2v2-3784-vr44 Duplicate Advisory: openCart Server-Side Template Injection (SSTI) vulnerability: Duplicate Advisory This advisory has been withdrawn...
server sidetemplate injectionduplicateadvisoryopencart
https://swisskyrepo.github.io/PayloadsAllTheThings/Server%20Side%20Template%20Injection/PHP/
Server Side Template Injection - PHP - Payloads All The Things
Payloads All The Things, a list of useful payloads and bypasses for Web Application Security
server sidetemplate injectionall thephppayloads
https://advisories.gitlab.com/composer/getgrav/grav/CVE-2024-28118/
Server Side Template Injection (SSTI) | GitLab Advisory Database (GLAD)
CVE-2024-28118 Server Side Template Injection (SSTI): Due to the unrestricted access to twig extension class from grav context, an attacker can redefine config...
server sidetemplate injectionsstigitlabadvisory
https://advisories.gitlab.com/composer/verbb/formie/CVE-2024-35191/
verbb/formie Server-Side Template Injection for variable-enabled settings | GitLab Advisory...
CVE-2024-35191 verbb/formie Server-Side Template Injection for variable-enabled settings: Users with access to a form's settings can include malicious Twig...
server sidetemplate injection
https://www.proofpoint.com/us/blog/threat-insight/injection-new-black-novel-rtf-template-inject-technique-poised-widespread
RTF Template Injection: Phishing Attachment Techniques | Proofpoint US
Oct 20, 2023 - Proofpoint has conducted research on a new phishing attachment technique called RTF template injection, which APT threat actors are using. Learn more.
template injectionrtfphishingattachmenttechniques
https://advisories.gitlab.com/composer/getgrav/grav/CVE-2024-28117/
Server Side Template Injection (SSTI) | GitLab Advisory Database (GLAD)
CVE-2024-28117 Server Side Template Injection (SSTI): Grav validates accessible functions through the Utils::isDangerousFunction function, but does not impose...
server sidetemplate injectionsstigitlabadvisory
https://advisories.gitlab.com/pypi/salt/CVE-2021-25283/
SaltStack Salt Server Side Template Injection | GitLab Advisory Database (GLAD)
CVE-2021-25283 SaltStack Salt Server Side Template Injection: An issue was discovered in through SaltStack Salt before 3002.5. The jinja renderer does not...
server sidetemplate injectionsaltstackgitlabadvisory
https://advisories.gitlab.com/pypi/spacy-llm/CVE-2025-25362/
Spacy-LLM Server-Side Template Injection (SSTI) vulnerability | GitLab Advisory Database (GLAD)
CVE-2025-25362 Spacy-LLM Server-Side Template Injection (SSTI) vulnerability: A Server-Side Template Injection (SSTI) vulnerability in Spacy-LLM v0.7.2 allows...
llm servertemplate injection
https://gowsundar.gitbook.io/book-of-bugbounty-tips/server-side-template-injection
Server Side Template Injection | Book of BugBounty Tips
server sidetemplate injectionbook ofbugbountytips
https://advisories.gitlab.com/pypi/litellm/CVE-2024-2952/
LiteLLM has Server-Side Template Injection vulnerability in /completions endpoint | GitLab Advisory...
CVE-2024-2952 LiteLLM has Server-Side Template Injection vulnerability in /completions endpoint: BerriAI/litellm is vulnerable to Server-Side Template...
server sidetemplate injection
https://advisories.gitlab.com/maven/com.xuxueli/xxl-job-core/CVE-2024-3366/
Xuxueli xxl-job template injection vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-3366 Xuxueli xxl-job template injection vulnerability: A vulnerability classified as problematic was found in Xuxueli xxl-job version 2.4.0. This...
job templatexxlinjectionvulnerabilitygitlab
https://advisories.gitlab.com/pypi/apache-superset/CVE-2021-41971/
Apache Superset SQL Injection when template processing is enabled | GitLab Advisory Database (GLAD)
CVE-2021-41971 Apache Superset SQL Injection when template processing is enabled: Apache Superset up to and including 1.3.0 when configured with...
https://advisories.gitlab.com/composer/getgrav/grav/CVE-2024-28116/
Server-Side Template Injection (SSTI) with Grav CMS security sandbox bypass | GitLab Advisory...
CVE-2024-28116 Server-Side Template Injection (SSTI) with Grav CMS security sandbox bypass: Grav CMS is vulnerable to a Server-Side Template Injection (SSTI),...
https://advisories.gitlab.com/composer/shopware/platform/CVE-2024-42356/
Shopware vulnerable to Server Side Template Injection in Twig using Context functions | GitLab...
CVE-2024-42356 Shopware vulnerable to Server Side Template Injection in Twig using Context functions: The context variable is injected into almost any Twig...
https://advisories.gitlab.com/golang/github.com/filebrowser/filebrowser/v2/CVE-2026-34530/
File Browser vulnerable to Stored Cross-site Scripting via text/template branding injection |...
CVE-2026-34530 File Browser vulnerable to Stored Cross-site Scripting via text/template branding injection: The SPA index page in File Browser is vulnerable to...
cross site scripting
https://advisories.gitlab.com/npm/@nocobase/plugin-workflow-sql/CVE-2026-34825/
NocoBase Has SQL Injection via template variable substitution in workflow SQL node | GitLab...
sql injection
https://xiongshimould.en.made-in-china.com/product/JmBYQLclTgpV/China-Plastic-Injection-Dustbins-Garbage-Box-Trash-Can-Template-Mold-Manufacturer.html
Plastic Injection Dustbins Garbage Box Trash Can Template Mold Manufacturer - Plastic Injection...
Plastic Injection Dustbins Garbage Box Trash Can Template Mold Manufacturer, Find Details and Price about Plastic Injection Mold Trash Can Mold from Plastic...
plastic injectiontrash candustbinsgarbagebox
https://advisories.gitlab.com/composer/shopware/core/CVE-2024-42355/
Shopware vulnerable to Server Side Template Injection in Twig using deprecation silence tag |...
CVE-2024-42355 Shopware vulnerable to Server Side Template Injection in Twig using deprecation silence tag: Shopware has a new Twig Tag sw_silent_feature_call...