qkqpttgf / OneManager-php

An index & manager of Onedrive based on serverless. Can be deployed to Heroku/Glitch/Vercel/Replit/SCF/FG/FC/CFC/PHP web hosting/VPS.

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

security bug

se-life opened this issue · comments

commented

All non-existent uri can be implemented and there is huge injecting risk

All non-existent uri can be implemented and there is huge injecting risk

we will not know the file is exist or not before run it.
the project have no database, can u show me a way of inject.