The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Burp scanner does not detect Thymeleaf SSTI vulnerability

nth347 | Last updated: Apr 13, 2022 08:39AM UTC

I set up an SSTI lab using Thymeleaf and Spring boot, I notice that the Burp scanner does not detect the vulnerability. Please enhance the scanner for better pentests. Thank you all.

Hannah, PortSwigger Agent | Last updated: Apr 13, 2022 02:48PM UTC