Skip to content

[Bug] post/admin/api/workspace/default/tool接口导入一个.tool文件,然后抓包工具里修改文件后缀为.php,.php也能导入,看来maxkb后端没有文件格式校验 #6835

[Bug] post/admin/api/workspace/default/tool接口导入一个.tool文件,然后抓包工具里修改文件后缀为.php,.php也能导入,看来maxkb后端没有文件格式校验

[Bug] post/admin/api/workspace/default/tool接口导入一个.tool文件,然后抓包工具里修改文件后缀为.php,.php也能导入,看来maxkb后端没有文件格式校验 #6835

Triggered via issue October 27, 2025 02:01
Status Success
Total duration 14s
Artifacts

issue-translator.yml

on: issue_comment
Fit to window
Zoom out
Zoom in

Annotations

1 warning
build
The `set-output` command is deprecated and will be disabled soon. Please upgrade to using Environment Files. For more information see: https://github.blog/changelog/2022-10-11-github-actions-deprecating-save-state-and-set-output-commands/