@@ -22,14 +22,16 @@ public void addViewControllers(ViewControllerRegistry registry) {
2222 registry .addViewController ("/index/ssrf" ).setViewName ("ssrf" );
2323 registry .addViewController ("/index/traversal" ).setViewName ("traversal" );
2424 registry .addViewController ("/index/xxe" ).setViewName ("xxe" );
25- registry .addViewController ("/index/deserialize " ).setViewName ("deserialize " );
25+ registry .addViewController ("/index/deserialization " ).setViewName ("deserialization " );
2626 registry .addViewController ("/index/redirect" ).setViewName ("redirect" );
2727 registry .addViewController ("/index/actuator" ).setViewName ("actuator" );
28- registry .addViewController ("/index/idor" ).setViewName ("idor" );
28+ registry .addViewController ("/index/idor" ).setViewName ("idor/idor_horizontal" );
29+ registry .addViewController ("/index/idor/horizontal" ).setViewName ("idor/idor_horizontal" );
30+ registry .addViewController ("/index/idor/vertical" ).setViewName ("idor/idor_vertical" );
2931 registry .addViewController ("/index/upload" ).setViewName ("upload" );
3032 registry .addViewController ("/index/xstream" ).setViewName ("xstream" );
3133 registry .addViewController ("/index/fastjson" ).setViewName ("fastjson" );
32- registry .addViewController ("/index/xff " ).setViewName ("xff " );
34+ registry .addViewController ("/index/ipforgery " ).setViewName ("ip_forgery " );
3335 registry .addViewController ("/index/unauth" ).setViewName ("unauth" );
3436 registry .addViewController ("/index/jackson" ).setViewName ("jackson" );
3537 registry .addViewController ("/index/log4j" ).setViewName ("log4j" );
@@ -42,6 +44,8 @@ public void addViewControllers(ViewControllerRegistry registry) {
4244 registry .addViewController ("/index/jwt" ).setViewName ("jwt" );
4345 registry .addViewController ("/index/xpath" ).setViewName ("xpath" );
4446 registry .addViewController ("/index/csv" ).setViewName ("csv_injection" );
47+ registry .addViewController ("/index/shiro" ).setViewName ("shiro" );
48+ registry .addViewController ("/index/passwordreset" ).setViewName ("logicflaw/passwordreset" );
4549
4650 }
4751
@@ -50,6 +54,6 @@ public void addViewControllers(ViewControllerRegistry registry) {
5054 public void addInterceptors (InterceptorRegistry registry ) {
5155 registry .addInterceptor (new LoginHandlerInterceptor ())
5256 .addPathPatterns ("/**" )
53- .excludePathPatterns ("/user/login" , "/user/ldap" , "/login" , "/css/**" , "/js/**" , "/img/**" , "/Unauth /**" , "/captcha" );
57+ .excludePathPatterns ("/user/login" , "/user/ldap" , "/login" , "/css/**" , "/js/**" , "/img/**" , "/video/**" , "/vulnapi/unauth /**" , "/captcha" );
5458 }
5559}
0 commit comments