Ssrf Testing

Validate Server-Side Request Forgery (SSRF) vulnerabilities by testing if user-controlled URLs can reach internal services, cloud metadata endpoints, or alternative protocols. Use when testing CWE-918 (SSRF), CWE-441 (Unintended Proxy), CWE-611 (XXE leading to SSRF), or findings involving URL fetching, webhooks, file imports, image/PDF/SVG processing, or XML parsing with external entities.

anshumanbh Updated

File contents

anshumanbh/securevibes/tree/main/packages/core/securevibes/skills/dast/ssrf-testing commit fd3e7f1500

Frequently asked questions

npx skillmds@latest add anshumanbh/ssrf-testing