> For the complete documentation index, see [llms.txt](https://michel-disbergen.gitbook.io/hack-notes/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://michel-disbergen.gitbook.io/hack-notes/web-pentesting/_vulnerabilities.md).

# \_vulnerabilities

- [JWT - multiple vulnerabilities](https://michel-disbergen.gitbook.io/hack-notes/web-pentesting/_vulnerabilities/jwt-multiple-vulnerabilities.md)
- [MASS assignment](https://michel-disbergen.gitbook.io/hack-notes/web-pentesting/_vulnerabilities/mass-assignment.md)
- [Web cache poisoning](https://michel-disbergen.gitbook.io/hack-notes/web-pentesting/_vulnerabilities/web-cache-poisoning.md)
- [Host-header poisoning](https://michel-disbergen.gitbook.io/hack-notes/web-pentesting/_vulnerabilities/host-header-poisoning.md)
- [HTTP request smuggling](https://michel-disbergen.gitbook.io/hack-notes/web-pentesting/_vulnerabilities/http-request-smuggling.md)
- [TE.TE](https://michel-disbergen.gitbook.io/hack-notes/web-pentesting/_vulnerabilities/http-request-smuggling/te.te.md)
- [CL.TE](https://michel-disbergen.gitbook.io/hack-notes/web-pentesting/_vulnerabilities/http-request-smuggling/cl.te.md)
- [TE.CL](https://michel-disbergen.gitbook.io/hack-notes/web-pentesting/_vulnerabilities/http-request-smuggling/te.cl.md)
- [H2.TE crlf](https://michel-disbergen.gitbook.io/hack-notes/web-pentesting/_vulnerabilities/http-request-smuggling/h2.te-crlf.md)
- [H2.TE (response queue poisoning)](https://michel-disbergen.gitbook.io/hack-notes/web-pentesting/_vulnerabilities/http-request-smuggling/h2.te-response-queue-poisoning.md)
