这个想了半天没啥思路,直接查别人的wp,贴地址:https://blog.csdn.net/qq_42812036/article/details/104324923 0x00 开始的页面猛一看乱七八糟,原来查源码会把它排一下版,感觉挺实用,记下来...看到flask就差不多能想到python模板注入了.以下是代码: import flask import os app = flask.Flask(__name__) app.config['FLAG'] = os.environ.pop('FL…