writeups.xyz writeups.xyz / Server-Side Prototype Pollution

Title Vulnerabilities Programs Authors
Finding RCE in NodeJS templating engine 'Eta' - CVE-2022-25967
Exploiting prototype pollution in Node without the filesystem
EJS - Server Side Prototype Pollution gadgets to RCE
Detecting Server-Side Prototype Pollution
Server side prototype pollution, how to detect and exploit
Server-side prototype pollution: Black-box detection without the DoS