hackerone.com
GitLab disclosed on HackerOne: Full Read SSRF on Gitlab's Internal...
Apparently, Grafana is bundled with Gitlab by default. So the grafana instance that is accessible via `/-/grafana/`is vulnerable to the SSRF outlined below. ## Summary By chaining together some...