imgproxy是imgproxy个人开发者的用于调整和转换远程镜像的快速且安全的独立服务器。 imgproxy存在代码问题漏洞,该漏洞源于存在针对0.0.0.0的服务器端请求伪造漏洞。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | SSRF in ImgProxy (only for educational purpose) | https://github.com/Admin9961/CVE-2025-24354-PoC | POC Details |
| 2 | imgproxy contains an issue caused by not blocking the 0.0.0.0 address even when IMGPROXY_ALLOW_LOOPBACK_SOURCE_ADDRESSES is set to false, letting local services be exposed, exploit requires network access. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2025/CVE-2025-24354.yaml | POC Details |
No public POC found.
Login to generate AI POCNo comments yet