Quequnlong Shiyi-Blog Server-Side Request Forgery Vulnerability

Vulnerability

A critical server-side request forgery (SSRF) vulnerability has been identified in Quequnlong Shiyi-Blog versions through 1.2.1. The issue resides in the '/app/sys/article/optimize' file, where manipulation of the 'url' argument allows for unauthorized requests to be sent to internal network services, potentially compromising network security.

Impact

Exploitation of this vulnerability allows for server-side request forgery, where an attacker can make requests to internal services or resources, bypassing network security controls.

Reproduction

To reproduce this vulnerability, upload a file through the '/api/file/upload' endpoint using directory traversal techniques to manipulate the file path. This can be done by including '../' sequences in the 'filename' parameter to upload files to arbitrary locations on the server. Once the file is uploaded, the SSRF vulnerability can be exploited by sending a request to the '/api/sys/article/reptile' endpoint with a URL that points to a sensitive internal service.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.0
exploitability
8.7
remediation
0.0
relevance
0.2
threat
6.4
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.