运行 undici-undici--CVE-2024-30261-20260318040251

漏洞条目
undici--CVE-2024-30261
实证状态
verified-real
复现 Profile
undici-ssrf
Artifact 模式
local-fixture

Mermaid 时间线

flowchart LR
A["选择 Advisory"] --> B["解析 Repro Profile"]
B --> C["生成 Compose 环境"]
C --> D["采集基线快照"]
D --> E["执行受控攻击步骤"]
E --> F["浏览器回放验证"]
F --> G["收集日志与证据"]
G --> H["回写 Registry 与报告"]

运行时间线

时间步骤状态说明
2026-03-18T04:02:51+00:00select-advisorycompletedundici--CVE-2024-30261
2026-03-18T04:02:51+00:00resolve-repro-profilecompletedundici-ssrf
2026-03-18T04:02:51+00:00doctorcompletedall checks passed
2026-03-18T04:02:54+00:00provision-compose-environmentready-
2026-03-18T04:02:54+00:00wait-readycompletedbaseline urls ready (1)
2026-03-18T04:02:54+00:00seed-environmentcompletedsteps=1
2026-03-18T04:02:54+00:00baseline-snapshotcompletedurls=1
2026-03-18T04:02:54+00:00controlled-attack-chaincompletedsteps=1
2026-03-18T04:02:54+00:00collect-logs-and-evidencecompletedcontainer_logs=1
2026-03-18T04:02:56+00:00cleanup-compose-environmentcompleteddocker compose down completed
2026-03-18T04:02:56+00:00update-registry-and-reportscompletedundici-undici--CVE-2024-30261-20260318040251

攻击步骤

工具状态输出
undici.ssrfcompleted/Users/x/websafe/06-case-studies/generated-runs/undici-undici--CVE-2024-30261-20260318040251/logs/attack.json

证据清单