Skip to content

【安全】图像拉取功能 SSRF #228

@CC-T-454455

Description

@CC-T-454455

如图,传入内网资源(另,响应里面泄露了 Stack Trace,虽然无关紧要):

Image

验证内网资源被访问:

Image

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions