webPromedium
Lab 205 — DockForge — SSRF in Webhook Test Endpoint
hackadvisor
Task: DockForge container registry with webhook test feature that performs server-side HTTP requests without SSRF protection. Solution: Created webhook pointing to internal metadata service (127.0.0.1:3001) disclosed in settings page, triggered test delivery to extract secrets via full-read SSRF.
$ ls tags/ techniques/
ssrfnodejsinformation_disclosurenginxexpressinternal_servicewebhookmetadata_servicecontainer_registry
ssrf_via_webhookinternal_service_discoverywebhook_test_endpoint_abuseno_url_validationfull_read_ssrf
🔒
Permission denied (requires tier.pro)
Sign in to access full writeups
Sign in with GitHub to continue. No email required.
$sign in$ grep --similar
Similar writeups
- [web][Pro]Lab 116 — InsightForge — IDOR via Undocumented Internal API— hackadvisor
- [web][Pro]WebhookForge— hackadvisor
- [web][Pro]Lab 209 — BuildForge — Path Traversal in Static File Serving— hackadvisor
- [web][Pro]Lab 104 — CloudOps Copilot — AI SSRF via Infrastructure Tool Abuse— hackadvisor
- [web][Pro]Lab 282 — StreamForge — SSRF via Webhook Test Bypasses Proxy Auth— hackadvisor