Back to directory
WRITEUP #2303

Command Injection in the GitHub Pages Build Pipeline

RCEOS command injection
byJoren Vrancken
Bounty
4,000
Program
GitHub
Published
Aug 25, 2022
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://blog.nietaanraken.nl/posts/github-pages-command-injection/
RELATED WRITEUPS
Vulnerabilities in Open Source C2 Frameworks
RCEOS command injection
SSD Advisory – SonicWall SMA100 Stored XSS To RCE
RCEOS command injection
[2,500$ Bug Bounty Write-Up] Remote Code Execution (RCE) via unclaimed Node package
RCEDependency confusion
Attacking PowerShell CLIXML Deserialization
DeserializationInsecure deserialization
Zero-Click Calendar invite — Critical zero-click vulnerability chain in macOS
RCEArbitrary file write

Built with ❤️ by Shubham Rawat