
Consumatore demo per gin v1.7.0 (CVE-2023-29401) — Context.FileAttachment con input utente. endorctl scan target.
Consumer demo vincolato a github.com/gin-gonic/gin v1.7.0 (vulnerabile a
CVE-2023-29401). L'handler /download/:filename passa l'input dell'utente
direttamente a Context.FileAttachment — il pattern di condizione di exploit
che Endor segnala come sfruttabile.