ã¯ããã« ãã®è¨äºã¯ä¸è¨ãªã³ã¯ã®æ¥æ¬èªç¿»è¨³è¨äºã§ã 翻訳ã誤ã£ã¦ããå ´åã¯ã³ã¡ã³ãã@no1zy_secã¾ã§ãç¥ããããã ããã¨å¹¸ãã§ãã [SSRF] Server Side Request Forgery Server Side Request Forgeryã¯ãµã¼ãã¼ã«ä»»æã®ãªã¯ã¨ã¹ãã®å®è¡ãå¼·å¶ããæ»æã§ããä¾ãã°nginxã®å ´åãproxy_passãã£ã¬ã¯ãã£ãã®ç¬¬2å¼æ°ãæ»æè ãæå®ã§ããå ´åã«æ»æãå¯è½ã«ãªãã¾ãã ã©ããã£ã¦è¦ã¤ããã ããã«ãµã¼ãã¼ãèå¼±ã«ãã2種é¡ã®ã¨ã©ã¼ãããã¾ãã internalãã£ã¬ã¯ãã£ãã®æ¬ å¦ã ããã¯å é¨ãªã¯ã¨ã¹ãã«ã®ã¿ä½¿ããã¨ãã§ãããã¨ã示ãããã«ä½¿ç¨ããã¾ã å®å ¨ã§ãªãå é¨ãªãã¤ã¬ã¯ã internalãã£ã¬ã¯ãã£ãã®æ¬ å¦ internalãã£ã¬ã¯ãã£ãã®æ¬ å¦ã§SSRFããããã¨ãã§ããå ¸åçãªè¨å®ãã¹ã§ãã
{{#tags}}- {{label}}
{{/tags}}