@@ -36,6 +36,7 @@ Sort by letter.
3636- [ IP Forge] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/IPForge.java )
3737- [ Java RMI] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/RMI/Server.java )
3838- [ JSONP] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/jsonp/JSONP.java )
39+ - [ ooxmlXXE] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/othervulns/ooxmlXXE.java )
3940- [ PathTraversal] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/PathTraversal.java )
4041- [ RCE] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/Rce.java )
4142- [ SpEL] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/SpEL.java )
@@ -44,11 +45,10 @@ Sort by letter.
4445- [ SSTI] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/SSTI.java )
4546- [ URL Redirect] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/URLRedirect.java )
4647- [ URL whitelist Bypass] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/URLWhiteList.java )
48+ - [ xlsxStreamerXXE] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/othervulns/xlsxStreamerXXE.java )
4749- [ XSS] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/XSS.java )
4850- [ XStream] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/XStreamRce.java )
4951- [ XXE] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/XXE.java )
50- - [ ooxmlXXE] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/othervulns/ooxmlXXE.java )
51- - [ xlsxStreamerXXE] ( https://github.com/JoyChou93/java-sec-code/blob/master/src/main/java/org/joychou/controller/othervulns/xlsxStreamerXXE.java )
5252
5353
5454
@@ -61,6 +61,7 @@ Sort by letter.
6161- [ Fastjson] ( https://github.com/JoyChou93/java-sec-code/wiki/Fastjson )
6262- [ Java RMI] ( https://github.com/JoyChou93/java-sec-code/wiki/Java-RMI )
6363- [ JSONP] ( https://github.com/JoyChou93/java-sec-code/wiki/JSONP )
64+ - [ POI-OOXML XXE] ( https://github.com/JoyChou93/java-sec-code/wiki/Poi-ooxml-XXE )
6465- [ SQLI] ( https://github.com/JoyChou93/java-sec-code/wiki/SQL-Inject )
6566- [ SSRF] ( https://github.com/JoyChou93/java-sec-code/wiki/SSRF )
6667- [ SSTI] ( https://github.com/JoyChou93/java-sec-code/wiki/SSTI )
@@ -189,7 +190,7 @@ Tomcat's default JSESSION session is valid for 30 minutes, so a 30-minute non-op
189190## Contributors
190191
191192Core developers : [ JoyChou] ( https://github.com/JoyChou93 ) .
192- Other developers: [ lightless] ( https://github.com/lightless233 ) , [ Anemone95] ( https://github.com/Anemone95 ) .
193+ Other developers: [ lightless] ( https://github.com/lightless233 ) , [ Anemone95] ( https://github.com/Anemone95 ) , [ waderwu ] ( https://github.com/waderwu ) .
193194
194195
195196## Donate
0 commit comments