An exploit demo that allows you to create fake wynntils crafteds with newlines in name. Credit to zatzou for it
src | ||
.gitignore | ||
Cargo.lock | ||
Cargo.toml | ||
README.md |
IT DOES NOT WORK ANYMORE. Wynntils pushed a fix.
What is this?
This thing is an example to exploit an issue in Wynntils
How does it work?
With the new Wynntils encoding, Wynntils DOES NOT validate crafted names for special characters like newlines. This can be exploited.
Credit to zatzou for finding this. Shits crazy, nerf poco