Hacker News new | ask | show | jobs
by shaded-enmity 1774 days ago
Defense in depth would disagree that it is fine. I'm pretty sure this vulnerability can go much further if you combine it with, for example, the `https_proxy` environment variable.