11.XS-LeaksREADME19.文件包含漏洞18.条件竞争17.子域名接管16.文件上传15.任意文件下载:读取14.列目录漏洞13.GraphQL测试12.SSRF01.SQL注入10.XSLT09.XSSI08.SAML测试07.XPATH注入06.未授权访问05.SSTI注入04.XXE03.CSRF02.XSS