Calyhre

joined 2 years ago
 

Today I randomly felt on this release note, mentioning an RCE “under certain conditions “

Digging up a bit, it’s a full blown RCE on any default install. Worst, unless you were aware of the /storybook path, it’s very unlikely you blocked it.

I also wrote a small POC here https://gist.github.com/Calyhre/67337024ece3762cbc3c9e4956b0e3d4

If you are using Plausible 3.0.0 until 3.2.0 included, you should upgrade ASAP, and rotate everything

[–] Calyhre@lemmy.world 42 points 1 week ago

Depends if you are upfront about it or not

[–] Calyhre@lemmy.world 3 points 6 months ago

Got that patch still in it’s brown envelope somewhere in a drawer, for doing a syntax highlighting plugin.

They were indeed cool

[–] Calyhre@lemmy.world 5 points 10 months ago (3 children)

Good Friday and Stephens are only for a very small portion of metropolitan France (former occupied territories that still have a few oddities like these)

[–] Calyhre@lemmy.world 1 points 1 year ago

I used to troll some colleagues when reviewing their changes by putting [Object object] or NaN in input fields. A non negligible amount of time may have been lost because of these

 

8 Years ago, I was living in Brazil, and was shocked by the price of the very few games I could find there. So I built this comparison tool to help me get these games at what I thought was a fair price. At that time I shared it on Reddit.

Today, I updated it with Switch 2 games, and it feels natural to me to share it here now instead!

Let me know what you think 👍