ssti-hunter - Detect and Assess Server-Side Template Injection
Detects, fingerprints, and assesses server-side template injection across common template engines, including exploitation analysis and structured reporting.
Tags
Updated: 2026-09-28Capabilities
Typical Inputs
Typical Outputs
What this skill does
- Identify injection points
- Confirm SSTI evaluation
- Fingerprint template engines
- Assess engine-specific exploitation
- Structure severity reports
Inputs
- Target URLs and endpoints
- HTTP requests and responses
- Reflected input behavior
- Error messages and stack traces
- Template engine context
Outputs
- SSTI detection findings
- Template engine fingerprint
- Exploitation assessment results
- Severity and CWE report
- Remediation guidance
