Jump to content

Recommended Posts

Posted

Allowing your server to fetch arbitrary remote content from user-supplied URLs opens the site up to SSRF security concerns. We mitigated around these concerns but decided in this day and age, the cat and mouse game is really no longer necessary or "worth it".

Posted
1 minute ago, bfarber said:

Allowing your server to fetch arbitrary remote content from user-supplied URLs opens the site up to SSRF security concerns. We mitigated around these concerns but decided in this day and age, the cat and mouse game is really no longer necessary or "worth it".

Fair enough.  Thanks for the explanation.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...