{% extends "introduction/base.html" %} {% block content %} {% block title %} SSRF LAB {% endblock %}

Read Blog


{% csrf_token %}
{% csrf_token %}
{% csrf_token %}
{% csrf_token %}
{{ blog }}
Try to find a .env file
def ssrf_lab(request):
 if request.user.is_authenticated:
  if request.method=="GET":
   return render(request,"Lab/ssrf/ssrf_lab.html",{"blog":"Read Blog About SSRF"})
  else:
   file=request.POST["blog"]
   try :
    dirname = os.path.dirname(__file__)
    filename = os.path.join(dirname, file)
    file = open(filename,"r")
    data = file.read()
    return render(request,"Lab/ssrf/ssrf_lab.html",{"blog":data})
   except:
    return render(request, "Lab/ssrf/ssrf_lab.html", {"blog": "No blog found"})
 else:
  return redirect('login')
{% endblock %}