Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / frohoff/ysoserial issues and pull requests

#203 - Ysoserial doesn't work with Java version 17

Issue - State: closed - Opened by otium44 over 1 year ago - 11 comments

#100 - Update pom.xml

Pull Request - State: closed - Opened by ghost almost 6 years ago - 2 comments
Labels: duplicate

#99 - Add Apereo CAS Exploit

Pull Request - State: open - Opened by Tom4t0 almost 6 years ago

#98 - fix: include javax.el with hibernate5, fix #97

Pull Request - State: closed - Opened by phra almost 6 years ago

#97 - Build with Hibernate5 fails

Issue - State: closed - Opened by phra almost 6 years ago

#96 - Added reverse shell capability for TemplatesImpl payloads.

Pull Request - State: open - Opened by NickstaDB almost 6 years ago

#95 - java 10 warnings

Issue - State: closed - Opened by jeremychoi almost 6 years ago

#93 - please suport XMLEncoder

Issue - State: closed - Opened by hktalent about 6 years ago

#92 - fix jitpack download link (again)

Pull Request - State: closed - Opened by frohoff about 6 years ago

#91 - Vaadingadget

Pull Request - State: closed - Opened by supersache about 6 years ago - 4 comments

#90 - CommonsCollections5.java - wrong gadget chain in comments

Issue - State: closed - Opened by quangntenemy about 6 years ago

#89 - JitPack link 404s

Issue - State: closed - Opened by james-otten about 6 years ago - 11 comments

#88 - hibernate 3 payload

Pull Request - State: closed - Opened by FelixMartel about 6 years ago - 1 comment

#87 - (False Positive) Error while generating "Spring1" payload

Issue - State: closed - Opened by ap00rv about 6 years ago - 2 comments

#86 - bug:javassist.CannotCompileException: [source error] ) is missing

Issue - State: closed - Opened by hktalent over 6 years ago - 7 comments

#85 - how Time-based delay

Issue - State: closed - Opened by hktalent over 6 years ago - 1 comment

#83 - fix jitpack link

Pull Request - State: closed - Opened by frohoff over 6 years ago

#82 - JitPack link in README fails

Issue - State: closed - Opened by DanMcInerney over 6 years ago - 1 comment

#81 - Add support for exploiting SSL RMI services.

Pull Request - State: closed - Opened by NickstaDB over 6 years ago

#79 - CommonsCollections1 Can not running

Issue - State: closed - Opened by evilmiracle over 6 years ago - 2 comments
Labels: duplicate

#78 - Use XStream

Issue - State: closed - Opened by MikeGoodBad over 6 years ago - 1 comment

#77 - An Error Of "java -cp ysoserial-master.jar ysoserial.exploit.RMIRegistryExploit "

Issue - State: closed - Opened by ftk-sostupid almost 7 years ago - 2 comments
Labels: duplicate

#76 - Add xstream serializer

Pull Request - State: closed - Opened by isears almost 7 years ago - 1 comment

#75 - Why do all the serialized payloads contain java.lang.Override?

Issue - State: closed - Opened by SivaDotRender about 7 years ago - 3 comments

#74 - WIP: Multiarg support

Pull Request - State: open - Opened by frohoff about 7 years ago

#73 - README updates

Pull Request - State: closed - Opened by frohoff about 7 years ago

#72 - Add arguments support for many payloads

Pull Request - State: closed - Opened by ugomeda about 7 years ago - 6 comments

#71 - change Runtime exec(String) to exec(String[])

Issue - State: open - Opened by frohoff about 7 years ago - 6 comments

#70 - Update README.md to reflect additional payloads

Pull Request - State: closed - Opened by relaxnow about 7 years ago - 1 comment

#68 - Add a gadget chain for exploiting the presence of clojure.

Pull Request - State: closed - Opened by JackOfMostTrades about 7 years ago - 1 comment

#67 - URLDNS: Small fix to avoid DNS resolution while generating the payload

Pull Request - State: closed - Opened by h3xstream over 7 years ago - 1 comment

#66 - Add URLDNS gadget, that uses the argument as a URL to trigger a DNS l…

Pull Request - State: closed - Opened by gebl over 7 years ago

#64 - maven-surefire build plugin version missing from pom.xml

Issue - State: closed - Opened by boompig over 7 years ago - 1 comment

#62 - ysoserial on JBoss 6.1.0.Final

Issue - State: closed - Opened by sunari1031 almost 8 years ago - 2 comments

#61 - Add result code

Pull Request - State: closed - Opened by ayound almost 8 years ago - 1 comment

#60 - change Runtime exec(String) to exec(String[])

Pull Request - State: closed - Opened by retanoj almost 8 years ago - 3 comments

#59 - README error

Issue - State: closed - Opened by vanhauser-thc almost 8 years ago - 1 comment

#58 - Updated Usage

Pull Request - State: open - Opened by alexlauerman almost 8 years ago

#57 - java 5 serialization

Issue - State: closed - Opened by vah13 almost 8 years ago - 1 comment

#56 - Multiple Commands

Issue - State: closed - Opened by raithedavion about 8 years ago - 2 comments

#54 - [Enhancement] TemplatesImpl gadget for IBM Java

Issue - State: open - Opened by federicodotta about 8 years ago - 5 comments

#53 - FileUpload2

Pull Request - State: closed - Opened by jacob-baines about 8 years ago - 3 comments

#52 - Adding the RhinoGadget, Javassist/Weld, JBossInterceptors Gadget to ysoserial.

Pull Request - State: closed - Opened by matthiaskaiser about 8 years ago - 2 comments

#51 - Fix Jython1 Breaking Java 6

Pull Request - State: closed - Opened by jacob-baines about 8 years ago - 1 comment

#50 - Adding general CC gadget that works with IBM and Oracle JRE

Pull Request - State: closed - Opened by matthiaskaiser about 8 years ago - 3 comments

#49 - A more generalized Jython1

Pull Request - State: closed - Opened by jacob-baines over 8 years ago - 4 comments

#48 - Update DynamicDependencies.java

Pull Request - State: closed - Opened by domischlegel over 8 years ago - 1 comment

#47 - Dynamic loader #10

Pull Request - State: open - Opened by drosenbauer over 8 years ago - 2 comments

#46 - Make AnnotationInvocationHandler usage dynamic

Issue - State: open - Opened by drosenbauer over 8 years ago

#45 - CLI improvements

Pull Request - State: open - Opened by drosenbauer over 8 years ago - 1 comment

#44 - Test fixes, some minor stuff

Pull Request - State: closed - Opened by mbechler over 8 years ago

#43 - JRMPClient payload: how does it work?

Issue - State: closed - Opened by alexandersolovey over 8 years ago - 4 comments

#42 - Upload and execute

Pull Request - State: closed - Opened by jacob-baines over 8 years ago - 4 comments

#41 - add optional String prefix to serialized object

Pull Request - State: closed - Opened by kyprizel over 8 years ago - 2 comments

#40 - No security manager: RMI class loader disabled

Issue - State: closed - Opened by BobPeterson over 8 years ago - 4 comments

#39 - Publish ysoserial to maven central

Issue - State: open - Opened by frohoff over 8 years ago
Labels: enhancement

#38 - Support for alternate serialization formats (XStream, Kryo, etc.)

Issue - State: open - Opened by frohoff over 8 years ago - 1 comment
Labels: enhancement

#37 - integrate DOS gadgets

Issue - State: open - Opened by frohoff over 8 years ago
Labels: enhancement

#36 - how to create php shell file with ysoserial?

Issue - State: closed - Opened by jameshentai over 8 years ago - 2 comments

#35 - how to create php shell file with ysoserial?

Issue - State: closed - Opened by hiennguyen82 over 8 years ago - 1 comment

#34 - Add a Gitter chat badge to README.md

Pull Request - State: closed - Opened by gitter-badger over 8 years ago

#33 - SSL Support for RMIRegistryExploit

Issue - State: closed - Opened by TorgeH over 8 years ago - 5 comments
Labels: enhancement

#32 - question about transformerChain

Issue - State: closed - Opened by mudongliang over 8 years ago - 3 comments

#31 - Test harness

Pull Request - State: open - Opened by jasinner over 8 years ago - 3 comments

#30 - JDK Multiple Version Execution Scaffolding

Issue - State: open - Opened by frohoff over 8 years ago - 1 comment
Labels: enhancement

#29 - Rebased Jython Gadget

Pull Request - State: closed - Opened by pwntester over 8 years ago - 1 comment

#28 - please tell me complete command to run this attack?

Issue - State: closed - Opened by hiennguyen82 over 8 years ago - 1 comment

#26 - workaround for issue 17

Pull Request - State: closed - Opened by jasinner over 8 years ago - 1 comment

#25 - can you tell me how to genarate a ysoserial code connect to netcat?

Issue - State: closed - Opened by hiennguyen82 over 8 years ago - 2 comments

#24 - please tell me how to use curl and -F in ysoserial?

Issue - State: closed - Opened by hiennguyen82 over 8 years ago - 1 comment

#23 - CLI improvements

Issue - State: open - Opened by frohoff over 8 years ago - 3 comments
Labels: enhancement

#22 - Maven site

Issue - State: open - Opened by frohoff over 8 years ago
Labels: enhancement

#21 - Fix method name in the usage part of the documentation

Pull Request - State: closed - Opened by nikaiw over 8 years ago - 1 comment

#20 - Cleaned up version of #14

Pull Request - State: closed - Opened by mbechler over 8 years ago - 7 comments

#19 - jython gadget

Pull Request - State: closed - Opened by pwntester over 8 years ago - 1 comment

#18 - CommonsBeanutilsCollectionsLogging1 dependent commons-collections version

Issue - State: closed - Opened by rungobier over 8 years ago - 1 comment

#17 - IncompleteAnnotationException when testing with OpenJDK 1.8.0_72

Issue - State: closed - Opened by jasinner over 8 years ago - 12 comments
Labels: bug

#16 - Add the payload for CVE-2011-2894 (Spring AOP)

Pull Request - State: closed - Opened by h3xstream over 8 years ago - 4 comments

#15 - Support for gadget/exploit credits, CVEs, writeups

Issue - State: closed - Opened by frohoff over 8 years ago - 1 comment
Labels: enhancement

#14 - Gadgets, Clients, etc.

Pull Request - State: closed - Opened by mbechler over 8 years ago - 2 comments

#13 - BeanShell exploit

Pull Request - State: closed - Opened by pwntester over 8 years ago

#12 - beanshell chain

Pull Request - State: closed - Opened by andreybpanfilov over 8 years ago - 2 comments

#11 - Automated generation of object-graph and call-tree documentation

Issue - State: open - Opened by frohoff over 8 years ago
Labels: enhancement

#10 - Support dependency isolation and/or conflicting versions

Issue - State: open - Opened by frohoff over 8 years ago - 9 comments
Labels: enhancement

#9 - Dependency version range testing

Issue - State: open - Opened by frohoff over 8 years ago
Labels: enhancement

#8 - Option(s) to override dependency versions during payload generation

Issue - State: open - Opened by frohoff over 8 years ago
Labels: enhancement

#7 - Add BeanShell payload

Issue - State: closed - Opened by jasinner over 8 years ago - 5 comments

#6 - CVE for the new Java exploit?

Issue - State: closed - Opened by attritionorg over 8 years ago - 13 comments

#5 - Added native sleep payloads

Pull Request - State: closed - Opened by federicodotta almost 9 years ago - 4 comments

#4 - Call setAccessible only once

Pull Request - State: closed - Opened by ltearno almost 9 years ago - 1 comment

#3 - Added native sleep payloads

Pull Request - State: closed - Opened by federicodotta almost 9 years ago

#2 - The POC works but it breaks with a back-trace

Issue - State: closed - Opened by fefafefa almost 9 years ago - 11 comments