Collected research
Astro framework and standards weaponization
Astro's Node adapter interpolates the unvalidated x-forwarded-proto and x-forwarded-port headers into the request URL, letting an attacker rewrite scheme, host, port and path. A non-special scheme payload delivers a path with no leading slash, bypassing path-based middleware auth, and the same control yields SSRF, cache-poisoned stored XSS and a patch bypass.
Record
- Researcher
- zhero and inzo_
- Published by
- zhero_web_security
- Date
- Topic
- Server
In the archive
Related sources
- Original Astro vulnerability and patch Advisory
- Astro security advisory Advisory
Tags
This page is the archive's own catalogue record. The research is the work of zhero and inzo_, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .