Redirect code being exploited? [email protected]/[email protected] #87038
Replies: 1 comment 3 replies
-
|
sample request |
Beta Was this translation helpful? Give feedback.
3 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
Uh oh!
There was an error while loading. Please reload this page.
-
Summary
since dec 5th, our logs started to show lots of errors for redirect.
today, they started to show what looks like shell output, e.g.
(where wwwuser is what you would get if you ran
whoamifrom the node process)and then
i'm having a hard time to trace back those requests yet.
We did upgrade next for reactshell to
[email protected]/[email protected], even though we don't have the affected dependencies (npm list react-server-dom-parcel react-server-dom-turbopack react-server-dom-webpack; └── (empty)) in exactly one hour after the announcement.Additional information
No response
Example
No response
Beta Was this translation helpful? Give feedback.
All reactions