← All Labs
🛡 SSTI ADVANCED +130 XP · +60 no-hint bonus

SSTI — Jinja Sandbox Escape

DocsRender uses a Jinja-style template engine in 'safe mode' — only basic variables are exposed. The sandbox is incomplete. Read the secret stored on a non-exposed object.

https://bookshop.local/search