XSLT Injection
Summary
Tools
Exploit
Determine the vendor and version
External Entity
Read files and SSRF using document
Remote Code Execution with Embedded Script Blocks
Remote Code Execution with PHP wrapper
Remote Code Execution with Java
Remote Code Execution with Native .NET
References
Last updated