mattermost/server/public/shared/httpservice
Jesse Hallam 5d787969c2
MM-67268: Fix SSRF bypass via IPv4-mapped IPv6 literals (#35097)
Canonicalize IPv4-mapped IPv6 addresses (e.g., ::ffff:127.0.0.1) to
their native IPv4 form in IsReservedIP before checking against reserved
IP ranges. This prevents attackers from bypassing SSRF protections by
using IPv4-mapped IPv6 literals to access internal services.
2026-01-29 14:36:47 +01:00
..
client.go MM-67268: Fix SSRF bypass via IPv4-mapped IPv6 literals (#35097) 2026-01-29 14:36:47 +01:00
client_test.go MM-67268: Fix SSRF bypass via IPv4-mapped IPv6 literals (#35097) 2026-01-29 14:36:47 +01:00
httpservice.go Improve HTTP service IP and host validation error messages (#33450) 2025-07-22 14:49:32 +02:00
transport.go Move HTTP service to public for plugin use (#27284) 2024-06-05 09:58:04 -07:00