Web Hack List

Collected research

Cloudflare Pagesにおける権限昇格と任意ページの改竄

Three chained flaws in the Cloudflare Pages build platform: a symlinked redirects file made the deploy step read arbitrary files as root, a version variable let npm install and run an attacker tarball as root, and path traversal in the internal deploy API proxy reached arbitrary endpoints, exposing every tenant's deployed files and Workers code.

Record

Researcher
RyotaK
Published by
blog.ryotak.net
Date
Topic
Server

In the archive

Tags

This page is the archive's own catalogue record. The research is the work of RyotaK, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .