Filter by tag: hql injection

Exploiting Hibernate Injections

9 min read 25 Feb 2020 by Robin Peraglie, Johannes Moritz
Hibernate is among one of the most commonly found database libraries used in Java web applications, shipping with its own query language. This technical post will teach you how to detect and exploit Hibernates very own vulnerability: The HQL Injection.