Skip to content

feat: template engine identification - #1340

Open
zar3bski wants to merge 1 commit into
danielmiessler:masterfrom
zar3bski:feat/template_engines_identification
Open

feat: template engine identification#1340
zar3bski wants to merge 1 commit into
danielmiessler:masterfrom
zar3bski:feat/template_engines_identification

Conversation

@zar3bski

Copy link
Copy Markdown
Contributor

Purpose of pull request
Provide a list to automate template engine identification by reflected content

Source
https://hacktricks.wiki/en/pentesting-web/ssti-server-side-template-injection/index.html#identification-by-payloads

Additional context
I hesitated between enriching Fuzzing/template-engines-expression.txt and create this list. Though their goals are similar, the current list is ought to be used with this algo in mind for it to make sense. Let me know if you prefer to merge it with the existing.

Best

@ItsIgnacioPortal

Copy link
Copy Markdown
Collaborator

@zar3bski Please take a look at the CONTRIBUTING.md: https://github.com/danielmiessler/SecLists/blob/master/CONTRIBUTING.md

@zar3bski

Copy link
Copy Markdown
Contributor Author

@zar3bski Please take a look at the CONTRIBUTING.md: https://github.com/danielmiessler/SecLists/blob/master/CONTRIBUTING.md
My bad, missed the README edition

@zar3bski
zar3bski force-pushed the feat/template_engines_identification branch from 6ddc64e to 8bfbb4c Compare July 28, 2026 17:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants