-
Notifications
You must be signed in to change notification settings - Fork 1.5k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
/ Path based open redirect #2766
Comments
Hello, i can't understand what the problem is. Please add more details. |
http://host:8889//evil.com ,this request will be redirect to evil.com. This would be a security risk |
Thanks for reporting the security flaw, i've fixed it with #2772, that is also compatible with the scenario in which MediaMTX is behind a reverse proxy, in a subpath. |
This issue is mentioned in release v1.4.0 🚀 |
This issue is being locked automatically because it has been closed for more than 6 months. |
Which version are you using?
v0.0.0
Which operating system are you using?
Describe the issue
Description
Describe how to replicate the issue
Did you attach the server logs?
yes / no
Did you attach a network dump?
yes / no
The text was updated successfully, but these errors were encountered: