We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
DefenseAgainstSSRF存在2点问题:
^_^ 占个坑,等有空了提pr
The text was updated successfully, but these errors were encountered:
看了下这个ssrf的修复方式,getRealIP会先发起HEAD请求,实测php和spring,GET和HEAD请求的区别只在于HEAD只返回头部信息,接口剩余代码还是会执行,这个就还是可以扫内网
Sorry, something went wrong.
No branches or pull requests
DefenseAgainstSSRF存在2点问题:
^_^ 占个坑,等有空了提pr
The text was updated successfully, but these errors were encountered: