Demo consumer pinned to github.com/gin-gonic/gin v1.7.0 (vulnerable to
CVE-2023-29401). The /download/:filename handler passes user input
directly to Context.FileAttachment — the exploit-condition pattern
Endor flags as exploitable.
dannyEndorTest/gin-vulnerable
Folders and files
| Name | Name | Last commit date | ||
|---|---|---|---|---|