Why Nostr? What is Njump?
2025-05-12 01:31:08
in reply to

阿甘 on Nostr: 直接插cloudflared 內網滲透 我猜可能是這個問題 Cross origin headers ...

直接插cloudflared 內網滲透

我猜可能是這個問題

Cross origin headers

Servers MUST set the Access-Control-Allow-Origin: * header on all responses to ensure compatibility with applications hosted on other domains.

For preflight (OPTIONS) requests, servers MUST also set, at minimum, the Access-Control-Allow-Headers: Authorization, * and Access-Control-Allow-Methods: GET, PUT, DELETE headers.

The header Access-Control-Max-Age: 86400 MAY be set to cache the results of a preflight request for 24 hours.
Author Public Key
npub13zyg3zysfylqc6nwfgj2uvce5rtlck2u50vwtjhpn92wzyusprfsdl2rce