$ cat writeup.md…
$ cat writeup.md…
bug-makers
Task: Flask log viewer app with path traversal protection on query params; a hidden 'priority channel' via X-Rewrite-URL header bypasses sanitization. Solution: inject X-Rewrite-URL header with ../app.py to bypass path traversal checks and read source code containing the flag.
Permission denied (requires tier.pro)
Sign in with GitHub or Discord to continue. No email required.
$sign in$ grep --similar