For members-only perks and exclusive content, join our Discord server!

Cloudflare Image Optimization Proxy ALLOWS SUBDOMAIN REDIRECTS via onerror attribute injection

When the pod guests brings a path-based 307 semi-open redirect gadget that affects a large portion of the internet to share on the pod - you know you've found the one. 😍

example[.]com/cdn-cgi/image/onerror=redirect/http://hello[.]example[.]com