GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Embed Notice

HTML Code

Corresponding Notice

  1. Embed this notice
    Q ✨ (q@glauca.space)'s status on Friday, 09-Jun-2023 17:33:22 JSTQ ✨Q ✨

    Today in absolutely wild things: a CA abusing an RCE in ACME.sh to add their own validation methods to it! https://github.com/acmesh-official/acme.sh/issues/4659

    In conversation2 years ago from glauca.spacepermalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: opengraph.githubassets.com
      GitHub - acmesh-official/acme.sh: A pure Unix shell script implementing ACME client protocol
      A pure Unix shell script implementing ACME client protocol - GitHub - acmesh-official/acme.sh: A pure Unix shell script implementing ACME client protocol
    2. Domain not in remote thumbnail source whitelist: opengraph.githubassets.com
      acme.sh runs arbitrary commands from a remote server · Issue #4659 · acmesh-official/acme.sh
      Hello, You may already be aware of this, but HiCA is injecting arbitrary code/commands into the certificate obtaining process and acme.sh is running them on the client machine. I am not sure if thi...
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.

Embed this notice