GHSA-jqx4-9gpq-rppm: @misskey-dev/summaly allows IP Filter Bypass via Redirect
Due to a validation error in got.scpaping
, it is possible to use an HTTP redirect to avoid IP filtering.
References
Code Behaviors & Features
Detect and mitigate GHSA-jqx4-9gpq-rppm with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →