Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2023-30019 PoC — imgproxy 代码问题漏洞

Source
Associated Vulnerability
Title:imgproxy 代码问题漏洞 (CVE-2023-30019)
Description:imgproxy是imgproxy个人开发者的用于调整和转换远程镜像的快速且安全的独立服务器。 imgproxy 3.14.0版本及之前版本存在安全漏洞,该漏洞源于缺乏对imageURL参数的清理。
Description
imgproxy <=3.14.0 is vulnerable to Server-Side Request Forgery (SSRF) due to a lack of sanitization of the imageURL parameter.
File Snapshot

id: CVE-2023-30019 info: name: Imgproxy <= 3.14.0 - Server-side request forgery (SSRF) author: ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.