5. Where it is
Communicating data to different systems, process
Wire protocols, web services
Storing and re-using data
Databases, cache servers, file systems
Tokens
HTTP cookies, HTML form parameters, API auth tokens
13. string - class instance
{{‘ ‘.__class__ .__mro__[2].__subclasses__()[40]('/etc/passwd').read()}}{{‘ ‘.__class__
python internal method which allows to
work with class instance like class object
18. Using flask native features
● Config - Flask template global that represents “The current
configuration object (flask.config)
● Contains all of the configuration values AFTER they
have been resolved by the framework.
● Configuration variables can be ADDED to a config object