Commit Graph

147 Commits

Author SHA1 Message Date
ghost
e971c838e4 chore: sign templates 🤖 2025-09-10 10:12:13 +00:00
Krzysztof Zając
232a840182 One more dast parameterg 2025-09-10 11:53:26 +02:00
ghost
b260564258 chore: sign templates 🤖 2025-09-09 18:59:01 +00:00
pussycat0x
da370e7c4f Merge pull request #13115 from Jaenact/add-omtr2
feat(template): add Salesforce CSP bypass detection
2025-09-10 00:28:41 +05:30
ghost
0c478cff8b chore: sign templates 🤖 2025-09-09 18:56:05 +00:00
pussycat0x
e3d2085af5 Merge pull request #13117 from Jaenact/add-beslist-csp
feat(template): add Beslist.nl CSP bypass detection
2025-09-10 00:25:38 +05:30
Jaenact
5775c064ca feat(template): add Beslist.nl CSP bypass detection 2025-09-06 12:46:14 +09:00
Jaenact
10bef016c3 edit payloads 2025-09-06 12:30:32 +09:00
Jaenact
0d48b9f2d4 feat(template): add Salesforce CSP bypass detection 2025-09-06 12:18:19 +09:00
ghost
a6caaf5880 chore: sign templates 🤖 2025-09-05 03:03:56 +00:00
Dhiyaneshwaran
eb0d3dd810 Merge pull request #13068 from Jaenact/typekit
feat(templates): Add Nuclei template for Typekit CSP bypass
2025-09-04 20:03:35 -07:00
ghost
a67a303ed6 chore: sign templates 🤖 2025-09-04 11:30:04 +00:00
Dhiyaneshwaran
39e576fbb8 Merge pull request #13074 from Jaenact/add-clients6
feat(templates): Add Nuclei template for clients6 CSP bypass
2025-09-04 04:29:41 -07:00
Jaenact
af9cff4986 feat(templates): Add Nuclei template for clients6 CSP bypass 2025-09-03 10:14:29 +09:00
Jaenact
357c8a71a2 feat(templates): Add Nuclei template for Typekit CSP bypass 2025-09-02 23:10:00 +09:00
Dhiyaneshwaran
2c1ace0138 Merge pull request #13062 from Jaenact/remove-cps-bypass
chore(csp-bypass): Remove patched or non-working endpoints
2025-09-02 01:19:50 -07:00
ghost
f8e9c22f13 chore: sign templates 🤖 2025-09-02 08:12:48 +00:00
Dhiyaneshwaran
9f819f1433 Merge pull request #13064 from Jaenact/edit-csp-bypass
fix(csp-bypass): Correct protocols and payloads for several endpoints
2025-09-02 01:12:26 -07:00
Jaenact
1f94fa4b1e fix(csp-bypass): Correct protocols and payloads for several endpoints
This commit applies several corrections to the CSP bypass list to align with recent changes in the renniepak/CSPBypass repository.

- Protocol Updates: Updated the following endpoints from HTTP to HTTPS:
  - links.services.disqus.com
  - clients1.google.com

- Payload Fix: Corrected the JSONP payload syntax for the following endpoint:
  - client.crisp.chat (alert(1);/* -> alert(1)//)
2025-09-02 16:32:30 +09:00
Jaenact
58148e8875 chore(csp-bypass): Remove patched or non-working endpoints
This commit removes multiple CSP bypass endpoints that have been patched or are otherwise no longer vulnerable. To maintain consistency, the corresponding YAML templates and their entries in data.tsv have been deleted.
2025-09-02 16:09:28 +09:00
ghost
187eeff30a chore: sign templates 🤖 2025-08-15 07:27:58 +00:00
Dhiyaneshwaran
c77d29a708 fix-spacing 2025-08-13 11:30:08 +05:30
Jaenact
b02c089466 feat(sqli): Add multiple payloads and author to time-based-sqli template 2025-08-05 14:30:23 +09:00
Prince Chaddha
ea7a5969c8 Revert "chore: update TemplateMan 🤖"
This reverts commit c31d574176.
2025-05-27 10:39:47 +08:00
ghost
c31d574176 chore: update TemplateMan 🤖 2025-05-27 02:29:19 +00:00
ghost
28ee3ceddc chore: sign templates 🤖 2025-04-10 11:18:32 +00:00
Dwi Siswanto
071da9f458 chore(xss): adds and condition in DSL matcher
Signed-off-by: Dwi Siswanto <git@dw1.io>
2025-04-10 17:59:56 +07:00
Dwi Siswanto
28b9448ab5 fix(xss): use waitdialog in dom-xss
Signed-off-by: Dwi Siswanto <git@dw1.io>
2025-04-10 17:55:46 +07:00
ghost
ca2e76e367 chore: sign templates 🤖 2025-03-10 11:57:49 +00:00
Prince Chaddha
9f3906e115 csp-bypass-name-update 2025-03-10 17:24:16 +05:30
ghost
776dce07ea chore: sign templates 🤖 2025-03-07 16:47:46 +00:00
Prince Chaddha
9e9414ca0e Merge pull request #11650 from projectdiscovery/csp-bypass-templates
CSP Bypass (DAST) Templates
2025-03-07 22:17:11 +05:30
Dhiyaneshwaran
713e8a64bf Added Additional Matcher 2025-03-07 17:28:54 +05:30
Dhiyaneshwaran
a9eb506cbb Added Flow http(1) && headless(1)
This helps in fixing the FP XSS & execute only when there is a CSP
2025-03-06 22:45:16 +05:30
ghost
a186f1fbdf chore: sign templates 🤖 2025-02-24 05:49:47 +00:00
Dhiyaneshwaran
25950780c7 Merge pull request #11543 from projectdiscovery/open-redirect-bypass
DAST Templates
2025-02-24 11:19:26 +05:30
Prince Chaddha
feabc9ef72 CSP Bypass (DAST) Templates 2025-02-21 22:48:07 +05:30
Prince Chaddha
494c1606f1 deleting CSP templates 2025-02-21 22:43:38 +05:30
Ritik Chaddha
cbb32a987f Merge branch 'main' into open-redirect-bypass 2025-02-19 20:02:31 +05:30
ghost
7464f7acaf chore: sign templates 🤖 2025-02-19 05:23:28 +00:00
Ritik Chaddha
afd4d176e4 Merge pull request #11618 from daffainfo/main
Update severity
2025-02-19 10:53:08 +05:30
ghost
1fd6626abb chore: sign templates 🤖 2025-02-19 05:17:03 +00:00
Muhammad Daffa
38281f9f13 Update lfi-keyed.yaml 2025-02-13 15:17:44 +07:00
Dhiyaneshwaran
6912c7facc final-push 2025-02-10 23:17:05 +05:30
Dhiyaneshwaran
e9a477a4d2 error-fix 2025-02-10 23:16:30 +05:30
Dhiyaneshwaran
90a5d60d02 fix-lint-error-final 2025-02-10 23:13:02 +05:30
Dhiyaneshwaran
253c5752b3 fix lint 2025-02-10 23:02:25 +05:30
Dhiyaneshwaran
1a6efac944 fix-lint-error 2025-02-10 22:33:51 +05:30
Dhiyaneshwaran
d43d8178a2 headless template conversion 2025-02-10 20:24:32 +05:30
ritikchaddha
fb3aa45bfb lint & variable err fix 2025-02-01 10:57:22 +05:30