logo

Breaking Down the OWASP Top 10: Injection

ID: a1d26314-15e0-5b28-a94a-2b2c0b47ddaa

STIX ID: report--a1d26314-15e0-5b28-a94a-2b2c0b47ddaa

Feed Name: HackerOne Blog

Date Published: 2024-12-17

Date Updated: 2026-06-12

...
...

This document is a concise technical primer on injection-class vulnerabilities in web applications, covering cross-site scripting (reflected, stored, DOM), SQL injection, CRLF injection, server-side template injection, header injection, command injection, directory traversal/local file inclusion, and common payload obfuscation techniques, with examples and potential impacts such as data exfiltration, remote code execution, and cache/response poisoning.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.