Frédéric Guillot
|
c166f80b58
fix: block RFC 6598 shared address space as non-public
|
1 mês atrás |
Frédéric Guillot
|
fe2bfb27cf
fix(fetcher): avoid possible SSRF TOCTOU/DNS-rebinding in private network check
|
2 meses atrás |
Frédéric Guillot
|
f9b756ecf8
feat: add SSRF protection for integration HTTP clients
|
2 meses atrás |
Frédéric Guillot
|
bb05b25530
refactor(urllib): replace AbsoluteURL and GetAbsoluteURL
|
3 meses atrás |
Frédéric Guillot
|
6c83e8c477
feat(mediaproxy): disallow the media proxy to fetch resources on private networks
|
4 meses atrás |
Frédéric Guillot
|
76df99f3a3
fix: only relative path should allowed for redirectURL parameter
|
6 meses atrás |
Frédéric Guillot
|
e5d9f2f5a0
Rename internal url package to avoid overlap with net/url
|
2 anos atrás |