mirror of
https://github.com/swisskyrepo/PayloadsAllTheThings.git
synced 2025-12-30 11:11:39 +01:00
Commit Graph
Select branches
Hide Pull Requests
gh-pages
master
#10
#100
#101
#102
#103
#105
#106
#107
#108
#109
#110
#111
#112
#113
#114
#115
#116
#117
#118
#119
#120
#121
#122
#123
#124
#125
#127
#128
#129
#13
#130
#131
#132
#134
#135
#136
#137
#138
#139
#142
#143
#145
#146
#148
#149
#15
#150
#151
#152
#154
#155
#156
#157
#158
#159
#162
#163
#164
#165
#166
#167
#169
#17
#171
#172
#173
#174
#175
#176
#178
#179
#18
#180
#181
#182
#183
#186
#187
#188
#19
#190
#191
#192
#193
#196
#197
#198
#2
#20
#200
#201
#202
#204
#206
#207
#208
#209
#21
#210
#213
#214
#215
#216
#217
#218
#219
#22
#220
#221
#223
#224
#225
#226
#227
#229
#23
#230
#231
#233
#234
#235
#236
#237
#238
#239
#24
#240
#241
#242
#243
#244
#246
#247
#248
#249
#25
#250
#251
#253
#254
#255
#257
#258
#259
#26
#260
#261
#262
#263
#264
#265
#266
#267
#268
#269
#27
#270
#271
#272
#273
#274
#275
#276
#277
#278
#279
#28
#280
#281
#282
#283
#284
#285
#287
#288
#289
#29
#290
#291
#292
#293
#294
#296
#297
#3
#30
#302
#304
#305
#306
#307
#308
#309
#310
#311
#312
#313
#314
#315
#316
#319
#32
#320
#322
#323
#324
#325
#326
#327
#328
#329
#330
#331
#332
#333
#334
#335
#336
#338
#339
#34
#341
#343
#345
#346
#348
#349
#35
#350
#351
#352
#353
#354
#355
#356
#358
#36
#360
#361
#362
#365
#366
#367
#37
#370
#371
#374
#375
#376
#377
#378
#379
#38
#381
#383
#384
#386
#387
#388
#389
#39
#395
#396
#397
#398
#399
#40
#400
#401
#402
#403
#404
#405
#406
#407
#408
#409
#41
#410
#411
#412
#413
#414
#415
#416
#417
#418
#419
#42
#420
#421
#422
#423
#424
#425
#426
#427
#428
#429
#43
#430
#431
#432
#433
#434
#435
#436
#437
#438
#439
#44
#440
#441
#442
#443
#444
#445
#446
#447
#448
#449
#45
#450
#451
#452
#453
#454
#455
#456
#457
#458
#46
#460
#461
#462
#463
#464
#465
#466
#467
#468
#469
#47
#470
#471
#472
#473
#474
#475
#476
#477
#478
#479
#48
#480
#481
#482
#483
#484
#485
#486
#487
#488
#489
#49
#490
#491
#492
#493
#494
#495
#496
#497
#498
#499
#50
#500
#501
#502
#503
#504
#505
#506
#507
#508
#509
#510
#511
#512
#513
#514
#515
#516
#517
#518
#519
#52
#520
#521
#522
#523
#524
#525
#526
#527
#528
#529
#53
#530
#531
#532
#533
#534
#535
#536
#537
#538
#539
#54
#540
#541
#541
#542
#543
#544
#545
#546
#547
#548
#549
#55
#550
#551
#552
#553
#554
#555
#556
#557
#558
#559
#56
#560
#561
#562
#563
#564
#565
#566
#567
#568
#569
#57
#570
#571
#572
#573
#574
#575
#576
#577
#578
#579
#58
#580
#580
#581
#582
#583
#584
#585
#586
#587
#588
#589
#590
#591
#592
#593
#594
#595
#596
#597
#598
#599
#6
#60
#600
#601
#602
#603
#604
#604
#605
#606
#607
#608
#609
#61
#610
#611
#612
#613
#614
#615
#616
#617
#618
#619
#62
#620
#621
#622
#623
#624
#625
#626
#627
#628
#629
#63
#630
#631
#631
#632
#633
#634
#635
#636
#637
#638
#639
#64
#640
#641
#642
#643
#644
#645
#646
#647
#648
#649
#65
#650
#651
#652
#653
#654
#655
#655
#656
#657
#658
#659
#66
#660
#661
#662
#663
#664
#665
#666
#667
#668
#669
#67
#670
#671
#672
#673
#674
#675
#676
#677
#677
#678
#679
#680
#681
#682
#683
#684
#685
#686
#687
#688
#689
#690
#691
#692
#693
#694
#695
#696
#697
#698
#699
#7
#70
#700
#701
#702
#703
#704
#705
#706
#706
#707
#708
#709
#71
#710
#711
#712
#713
#714
#715
#716
#717
#718
#719
#719
#72
#720
#720
#721
#722
#723
#724
#725
#726
#727
#728
#729
#73
#730
#731
#732
#733
#734
#735
#736
#737
#738
#739
#740
#740
#741
#741
#742
#743
#744
#745
#746
#747
#748
#749
#75
#750
#751
#752
#753
#754
#755
#756
#757
#758
#759
#76
#760
#761
#762
#763
#764
#765
#766
#767
#768
#769
#770
#771
#772
#773
#774
#775
#775
#776
#777
#778
#779
#780
#781
#782
#783
#784
#785
#786
#787
#788
#789
#79
#790
#791
#792
#793
#794
#795
#796
#797
#798
#799
#799
#8
#8
#800
#801
#802
#803
#804
#805
#806
#807
#807
#808
#808
#809
#809
#810
#810
#811
#811
#82
#83
#85
#86
#87
#88
#92
#93
#94
#96
#97
#98
#99
1.0
2.0
2.1
3.0
4.0
4.1
4.2
Select branches
Hide Pull Requests
gh-pages
master
#10
#100
#101
#102
#103
#105
#106
#107
#108
#109
#110
#111
#112
#113
#114
#115
#116
#117
#118
#119
#120
#121
#122
#123
#124
#125
#127
#128
#129
#13
#130
#131
#132
#134
#135
#136
#137
#138
#139
#142
#143
#145
#146
#148
#149
#15
#150
#151
#152
#154
#155
#156
#157
#158
#159
#162
#163
#164
#165
#166
#167
#169
#17
#171
#172
#173
#174
#175
#176
#178
#179
#18
#180
#181
#182
#183
#186
#187
#188
#19
#190
#191
#192
#193
#196
#197
#198
#2
#20
#200
#201
#202
#204
#206
#207
#208
#209
#21
#210
#213
#214
#215
#216
#217
#218
#219
#22
#220
#221
#223
#224
#225
#226
#227
#229
#23
#230
#231
#233
#234
#235
#236
#237
#238
#239
#24
#240
#241
#242
#243
#244
#246
#247
#248
#249
#25
#250
#251
#253
#254
#255
#257
#258
#259
#26
#260
#261
#262
#263
#264
#265
#266
#267
#268
#269
#27
#270
#271
#272
#273
#274
#275
#276
#277
#278
#279
#28
#280
#281
#282
#283
#284
#285
#287
#288
#289
#29
#290
#291
#292
#293
#294
#296
#297
#3
#30
#302
#304
#305
#306
#307
#308
#309
#310
#311
#312
#313
#314
#315
#316
#319
#32
#320
#322
#323
#324
#325
#326
#327
#328
#329
#330
#331
#332
#333
#334
#335
#336
#338
#339
#34
#341
#343
#345
#346
#348
#349
#35
#350
#351
#352
#353
#354
#355
#356
#358
#36
#360
#361
#362
#365
#366
#367
#37
#370
#371
#374
#375
#376
#377
#378
#379
#38
#381
#383
#384
#386
#387
#388
#389
#39
#395
#396
#397
#398
#399
#40
#400
#401
#402
#403
#404
#405
#406
#407
#408
#409
#41
#410
#411
#412
#413
#414
#415
#416
#417
#418
#419
#42
#420
#421
#422
#423
#424
#425
#426
#427
#428
#429
#43
#430
#431
#432
#433
#434
#435
#436
#437
#438
#439
#44
#440
#441
#442
#443
#444
#445
#446
#447
#448
#449
#45
#450
#451
#452
#453
#454
#455
#456
#457
#458
#46
#460
#461
#462
#463
#464
#465
#466
#467
#468
#469
#47
#470
#471
#472
#473
#474
#475
#476
#477
#478
#479
#48
#480
#481
#482
#483
#484
#485
#486
#487
#488
#489
#49
#490
#491
#492
#493
#494
#495
#496
#497
#498
#499
#50
#500
#501
#502
#503
#504
#505
#506
#507
#508
#509
#510
#511
#512
#513
#514
#515
#516
#517
#518
#519
#52
#520
#521
#522
#523
#524
#525
#526
#527
#528
#529
#53
#530
#531
#532
#533
#534
#535
#536
#537
#538
#539
#54
#540
#541
#541
#542
#543
#544
#545
#546
#547
#548
#549
#55
#550
#551
#552
#553
#554
#555
#556
#557
#558
#559
#56
#560
#561
#562
#563
#564
#565
#566
#567
#568
#569
#57
#570
#571
#572
#573
#574
#575
#576
#577
#578
#579
#58
#580
#580
#581
#582
#583
#584
#585
#586
#587
#588
#589
#590
#591
#592
#593
#594
#595
#596
#597
#598
#599
#6
#60
#600
#601
#602
#603
#604
#604
#605
#606
#607
#608
#609
#61
#610
#611
#612
#613
#614
#615
#616
#617
#618
#619
#62
#620
#621
#622
#623
#624
#625
#626
#627
#628
#629
#63
#630
#631
#631
#632
#633
#634
#635
#636
#637
#638
#639
#64
#640
#641
#642
#643
#644
#645
#646
#647
#648
#649
#65
#650
#651
#652
#653
#654
#655
#655
#656
#657
#658
#659
#66
#660
#661
#662
#663
#664
#665
#666
#667
#668
#669
#67
#670
#671
#672
#673
#674
#675
#676
#677
#677
#678
#679
#680
#681
#682
#683
#684
#685
#686
#687
#688
#689
#690
#691
#692
#693
#694
#695
#696
#697
#698
#699
#7
#70
#700
#701
#702
#703
#704
#705
#706
#706
#707
#708
#709
#71
#710
#711
#712
#713
#714
#715
#716
#717
#718
#719
#719
#72
#720
#720
#721
#722
#723
#724
#725
#726
#727
#728
#729
#73
#730
#731
#732
#733
#734
#735
#736
#737
#738
#739
#740
#740
#741
#741
#742
#743
#744
#745
#746
#747
#748
#749
#75
#750
#751
#752
#753
#754
#755
#756
#757
#758
#759
#76
#760
#761
#762
#763
#764
#765
#766
#767
#768
#769
#770
#771
#772
#773
#774
#775
#775
#776
#777
#778
#779
#780
#781
#782
#783
#784
#785
#786
#787
#788
#789
#79
#790
#791
#792
#793
#794
#795
#796
#797
#798
#799
#799
#8
#8
#800
#801
#802
#803
#804
#805
#806
#807
#807
#808
#808
#809
#809
#810
#810
#811
#811
#82
#83
#85
#86
#87
#88
#92
#93
#94
#96
#97
#98
#99
1.0
2.0
2.1
3.0
4.0
4.1
4.2
-
ae3f91c88alatex injection add blacklist bypass
Alexander Hebel
2023-11-12 11:13:41 +0100 -
9e7e133a0eUpdate Linux - Privilege Escalation.md
trace
2023-11-10 11:24:02 +0530 -
d80068cc1b
Privileged File Delete
Swissky
2023-11-04 15:52:29 +0100 -
49bc19e992Update README.md
Thomas Emerson Glucklich
2023-11-01 11:32:31 -0400 -
46208ca898
Prompt Injection - RCE payloads
Swissky
2023-11-01 13:56:38 +0100 -
ed081d7f29
Vulnerability Reports
Swissky
2023-10-31 17:45:24 +0100 -
95a85b455dAdd two methods about LFI to RCE via PHP PEARCMD, and delete extra double quotes in method 2 payload
Str3am
2023-11-01 00:35:59 +0800 -
072cac04d6Add two methods about LFI to RCE via PHP PEARCMD
Str3am
2023-11-01 00:26:27 +0800 -
156990a2c6Merge pull request #691 from itsparakh/patch-1
Swissky
2023-10-30 18:17:56 +0100 -
4500fdc447Update README.md
itsparakh
2023-10-28 23:10:28 +0530 -
85871c6c14Merge pull request #690 from idealphase/master
Swissky
2023-10-28 17:34:14 +0200 -
07cf2831ca
AWS Key ID + UAC + Race Condition
Swissky
2023-10-28 17:31:59 +0200 -
85310ba8e5Update README.md (XSLT Injection)
idealphase
2023-10-28 19:47:25 +0700 -
0767268dc3
Use gender neutral language
Leet
2023-10-23 21:15:27 +0000 -
3ad350b753
Prompts Examples
Swissky
2023-10-22 17:17:55 +0200 -
46d8b09ccaMerge pull request #1 from aadi1011/aadi1011-patch-1
Aadith Sukumar
2023-10-21 00:05:55 +0530 -
79eca1176fAdded Challenge
Aadith Sukumar
2023-10-21 00:05:29 +0530 -
d11367c4bbAdded Preventive Measure
Aadith Sukumar
2023-10-21 00:04:39 +0530 -
ada7de01e1Update README.md
Aadith Sukumar
2023-10-21 00:01:02 +0530 -
4307665e34Update README.md
Aadith Sukumar
2023-10-20 23:58:12 +0530 -
a804e74cb7Create Atlassian JIRA Servicedesk.md
Devang Solanki
2023-10-19 14:41:55 +0530 -
0f085798c7Merge pull request #686 from swisskyrepo/prototype-pollution
Swissky
2023-10-18 18:47:31 +0200 -
ccccb34c61
Prototype Pollution Update
Swissky
2023-10-18 18:46:41 +0200 -
60d86e90b3
feat: add login bypass payload
AvinFajarF
2023-10-17 10:55:11 +0700 -
a2f0019701Update README.md
0xParzival
2023-10-16 12:28:21 -0700 -
c95a0a1a28Merge pull request #681 from the-pythonist/the-pythonist-patch-1
Swissky
2023-10-15 19:36:33 +0200 -
6c38c3cddaMerge pull request #682 from 0xblank/master
Swissky
2023-10-15 19:35:32 +0200 -
d052949a6bMerge pull request #683 from swisskyrepo/rmi-update
Swissky
2023-10-15 19:34:41 +0200 -
4b6db7b471
Java beanshooter
Swissky
2023-10-15 19:31:16 +0200 -
51e8dc6378Fix typo in GraphQL Injection README.md
0xblank
2023-10-14 16:39:25 +0200 -
82c3cd92d1Update README.md
the-pythonist
2023-10-12 14:51:23 +0200 -
eebea7cb4dMerge pull request #680 from swisskyrepo/books-update
Swissky
2023-10-12 10:23:48 +0200 -
886b64801d
Update Books References
Swissky
2023-10-12 10:22:37 +0200 -
46e446a06fMerge pull request #679 from swisskyrepo/msi-installer
Swissky
2023-10-11 21:06:37 +0200 -
e86f221fe8
Fix typo in MSI installer
Swissky
2023-10-11 21:05:54 +0200 -
5556f6ff79
MSI Installer - PrivEsc
Swissky
2023-10-11 21:03:47 +0200 -
7f1823efbe
Fix character matching for '>' and its URL entity encoding from @CaoZnZZ
Swissky
2023-10-10 13:56:57 +0200 -
dd7525dc8fMerge pull request #630 from mtausig/patch-2
Swissky
2023-10-10 12:57:44 +0200 -
a95f11b32eMerge pull request #662 from Vunnm/master-1
Swissky
2023-10-10 12:10:59 +0200 -
103f41898bMerge pull request #663 from cfpadok/develop
Swissky
2023-10-09 23:19:43 +0200 -
12e56724f1Merge pull request #678 from aadi1011/master
Swissky
2023-10-09 21:11:54 +0200 -
19f138d4adUpdate README.md
Swissky
2023-10-09 20:52:28 +0200 -
a90cb7f2c7Clickjacking Challenge
Aadith Sukumar
2023-10-09 11:38:37 +0530 -
5115ac95e8Improved References
Aadith Sukumar
2023-10-09 10:40:05 +0530 -
2b54b5034fFixed Anchor in Summary
Aadith Sukumar
2023-10-09 09:42:20 +0530 -
ce4affc79bUpdate and rename Clickjacking.md to README.md
Aadith Sukumar
2023-10-09 09:40:28 +0530 -
b26f6e13c5Merge 5a0ed9f85d30cfdfca4fd8f4e75df2e7d5b19023 into a71a7936486a47f26f3bc1942c3ee440ac947acd
R0ttCyph3r
2023-10-09 00:35:51 +0300 -
ad93bb5e22Merge branch 'swisskyrepo:master' into master
Aadith Sukumar
2023-10-08 23:51:36 +0530 -
bd42625b32Create Clickjacking.md
Aadith Sukumar
2023-10-08 23:50:58 +0530 -
a71a793648Merge pull request #676 from dahalsharad/add-wcd-exploit-description-and-image
Swissky
2023-10-08 19:10:05 +0200 -
5a0ed9f85dCreate Metabase Pre-auth RCE CVE-2023-38646-revshell.py
R0ttCyph3r
2023-10-08 17:23:22 +0530 -
37a4f8c977
added wcd exploit description and demonstrative image
sharad
2023-10-04 22:54:37 +0545 -
892c68e6e7
PEAR_Config example
Swissky
2023-10-02 17:12:36 +0200 -
837f220264
LFI with pearcmd.php
Swissky
2023-10-02 12:52:10 +0200 -
55edc9fc74
Fix MySQL duplicate cheatsheet
Swissky
2023-10-01 12:45:12 +0200 -
d142587f28
Race Condition WIP + AD asreproast/kerberoasting
Swissky
2023-10-01 12:42:20 +0200 -
a0475a2f45Merge pull request #675 from nuts7/kerberoast-without-preauth
Swissky
2023-09-30 18:51:19 +0200 -
485103e9bb
IDOR Numeric, Hash, Wildcard and PRNG
Swissky
2023-09-25 14:15:48 +0200 -
84569e18e4Merge pull request #674 from eltociear/patch-1
Swissky
2023-09-22 14:50:49 +0200 -
0cea24cfcb
Add Kerberoasting w/o domain account
nuts7
2023-09-22 13:38:28 +0200 -
2aaeac91f8Fix typo in README.md
Ikko Eltociear Ashimine
2023-09-22 00:11:33 +0900 -
83f1af0af0
Command injection update
Swissky
2023-09-21 13:09:57 +0200 -
e9fb4f100c
Google Web Toolkit
Swissky
2023-09-19 09:58:22 +0200 -
59640ba51a
MYSQL Wide byte injection (GBK)
Swissky
2023-09-14 10:53:37 +0200