webPromedium
Lab 247 — PulseGuard — SSTI in Webhook Notification Templates
hackadvisor
Task: Express.js uptime monitoring platform with Liquid template support in webhook notifications. Solution: SSTI via LiquidJS include tag to read /proc/self/environ and extract FLAG from environment variables.
$ ls tags/ techniques/
ssti_liquidjslfi_via_include_tagproc_environ_disclosure
🔒
Permission denied (requires tier.pro)
Sign in to access full writeups
Sign in with GitHub to continue. No email required.
$sign in$ grep --similar
Similar writeups
- [web][Pro]Lab 236 — PulseAlert — Blind SSTI via Notification Template Engine— hackadvisor
- [web][Pro]Lab 213 — PingCraft — SSTI via Template Preview Rendering— hackadvisor
- [web][Pro]Lab 54 — PulseGuard — RCE via node:vm Sandbox Escape— hackadvisor
- [web][Pro]Lab 256 — UptimeRadar — SSRF via URL Health Check— hackadvisor
- [web][Pro]Lab 315 — PulseMetrics — SSRF Chain to SSTI via Internal Services— hackadvisor