Skip to main content

exploit-ssti

Server-Side Template Injection (SSTI) — RCE through template engines. Covers Jinja2 (Python/Flask), Twig (PHP/Symfony), Freemarker (Java), ERB (Ruby), Razor (.NET). Includes engine fingerprinting, MRO chain construction, and filter bypass.

Jump to install

Source facts

Repository
PurpleAILAB/Decepticon
Last source activity
June 2, 2026 at 18:57
Detected SKILL.md language
English
Stars
5,128
Forks
990

Install options

The review-first prompt is selected by default. You can switch to a direct command or download a local copy.

Review the source files

Read SKILL.md and any companion files shown by SkillsMP before deciding whether to install.