SasanLabs / VulnerableApp-facade

VulnerableApp-facade is probably most modern lightweight distributed farm of Vulnerable Applications built for handling wide range of vulnerabilities across tech stacks.

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Openresty is returning 413 response

preetkaran20 opened this issue · comments

Describe the bug
Currently, if we upload a file of size more than 2.5 MB in unrestricted file upload vulnerability, we will see the 413 Request Entity Too Large error in response. We are looking to not throw errors from openresty and let the vulnerable applications handle it the large request entity

image

To Reproduce

  1. Go to Unrestricted File Upload Vulnerability
  2. Click on Level1 and upload an image file
  3. Go to developer tools and see the network tab for errors and it will show 413 error.

Expected behavior
OpenResty should not throw 413 errors and let the application throw the error. So we need to remove the limitation from openresty or make it 100MB of size.

Solution
Follow the below link for adding configuration to not restrict the file-upload: https://www.keycdn.com/support/413-request-entity-too-large#nginx

Hi, can I work on this issue as part of the Hacktoberfest 2022 campaign?

Hi @vanjo9800 ,

Sure, assigned the issue to you.

thanks,
Karan

Are you still working on this @vanjo9800 ?