@@ -36,6 +36,7 @@ Sort by letter.
36
36
- [ IP Forge] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/IPForge.java )
37
37
- [ Java RMI] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/RMI/Server.java )
38
38
- [ JSONP] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/jsonp/JSONP.java )
39
+ - [ ooxmlXXE] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/othervulns/ooxmlXXE.java )
39
40
- [ PathTraversal] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/PathTraversal.java )
40
41
- [ RCE] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/Rce.java )
41
42
- [ SpEL] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/SpEL.java )
@@ -44,11 +45,10 @@ Sort by letter.
44
45
- [ SSTI] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/SSTI.java )
45
46
- [ URL Redirect] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/URLRedirect.java )
46
47
- [ URL whitelist Bypass] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/URLWhiteList.java )
48
+ - [ xlsxStreamerXXE] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/othervulns/xlsxStreamerXXE.java )
47
49
- [ XSS] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/XSS.java )
48
50
- [ XStream] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/XStreamRce.java )
49
51
- [ XXE] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/XXE.java )
50
- - [ ooxmlXXE] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/othervulns/ooxmlXXE.java )
51
- - [ xlsxStreamerXXE] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/othervulns/xlsxStreamerXXE.java )
52
52
53
53
54
54
@@ -61,6 +61,7 @@ Sort by letter.
61
61
- [ Fastjson] ( https://github.com/JoyChou93/java-sec-code/wiki/Fastjson )
62
62
- [ Java RMI] ( https://github.com/JoyChou93/java-sec-code/wiki/Java-RMI )
63
63
- [ JSONP] ( https://github.com/JoyChou93/java-sec-code/wiki/JSONP )
64
+ - [ POI-OOXML XXE] ( https://github.com/JoyChou93/java-sec-code/wiki/Poi-ooxml-XXE )
64
65
- [ SQLI] ( https://github.com/JoyChou93/java-sec-code/wiki/SQL-Inject )
65
66
- [ SSRF] ( https://github.com/JoyChou93/java-sec-code/wiki/SSRF )
66
67
- [ SSTI] ( https://github.com/JoyChou93/java-sec-code/wiki/SSTI )
@@ -189,7 +190,7 @@ Tomcat's default JSESSION session is valid for 30 minutes, so a 30-minute non-op
189
190
## Contributors
190
191
191
192
Core developers : [ JoyChou] ( https://github.com/JoyChou93 ) .
192
- Other developers: [ lightless] ( https://github.com/lightless233 ) , [ Anemone95] ( https://github.com/Anemone95 ) .
193
+ Other developers: [ lightless] ( https://github.com/lightless233 ) , [ Anemone95] ( https://github.com/Anemone95 ) , [ waderwu ] ( https://github.com/waderwu ) .
193
194
194
195
195
196
## Donate
0 commit comments