Collected research
Cloudflare Pagesにおける権限昇格と任意ページの改竄
Three chained flaws in the Cloudflare Pages build platform: a symlinked redirects file made the deploy step read arbitrary files as root, a version variable let npm install and run an attacker tarball as root, and path traversal in the internal deploy API proxy reached arbitrary endpoints, exposing every tenant's deployed files and Workers code.
Record
- Researcher
- RyotaK
- Published by
- blog.ryotak.net
- Date
- Topic
- Server
In the archive
Tags
This page is the archive's own catalogue record. The research is the work of RyotaK, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .