Files
White-Mage/HTB Labs/Wordlist/Pattern-Matching/dangerous-functions-angular.txt
T
2024-10-13 22:07:53 +02:00

15 lines
291 B
Plaintext

# Angular pipes
bypassSecurityTrustHtml
bypassSecurityTrustScript
bypassSecurityTrustStyle
bypassSecurityTrustUrl
bypassSecurityTrustResourceUrl
# Angular inputs
[innerHTML] #Insert given HTML without escaping dangerous characters
# angular.js (aka Angular 1)
trustAsHtml
$eval
$evalAsync